0x8hany

@Haniawad

Freelancer : Penetration tester ( Web,Infrastructure,Wireless,VoiP) Trainer OSCP, OSWP, WAPTx Bug hunter @ Synack http://bugcrowd.c

Sudanese@Dubai
Vrijeme pridruživanja: studeni 2009.

Tweetovi

Blokirali ste korisnika/cu @Haniawad

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @Haniawad

  1. proslijedio/la je Tweet

    Exclusive: Darktrace is one of the hottest cybersecurity startups in the world and claims to have grown to a $2 billion valuation. But, after speaking with more than two dozen current and former staffers, I learned about some darkness inside Darktrace...

    Prikaži ovu nit
    Poništi
  2. proslijedio/la je Tweet
    3. velj
    Poništi
  3. proslijedio/la je Tweet
    31. sij

    Join me and on Tuesday, February 11th as we unveil 3.0! We will demo new attack primitives, performance improvements, and changes in the GUI. Register for the webinar here (recording available afterwards):

    Poništi
  4. proslijedio/la je Tweet
    30. sij
    Poništi
  5. proslijedio/la je Tweet
    29. sij

    الحمدلله سأقوم بتقديم دورتي التخصصية Attacking and Securing APIs في مؤتمر Blackhat USA 2020 أكبر مؤتمر أمن معلومات في العالم، بعد أن نجحنا بنفس المؤتمر العام الماضي! الوصول للقمة صعب، و البقاء بالقمة أصعب، ولكن التوفيق من عند الله.

    Poništi
  6. proslijedio/la je Tweet
    28. sij

    New blog (and tool): Attacking Azure, Azure AD, and Introducing PowerZure

    Prikaži ovu nit
    Poništi
  7. proslijedio/la je Tweet
    26. sij

    Ladies and gentlemen, I present you a working Remote Code Execution (RCE) exploit for the Remote Desktop Gateway (CVE-2020-0609 & CVE-2020-0610). Accidentally followed a few rabbit holes but got it to work! Time to write a blog post ;) Don't forget to patch!

    Prikaži ovu nit
    Poništi
  8. proslijedio/la je Tweet
    23. sij

    Replace your existing solution with one that is faster, lighter and easier to manage. Get a free 15-day trial of Falcon Prevent AV today

    Poništi
  9. proslijedio/la je Tweet
    22. sij

    New from - Revisiting Remote Desktop Lateral Movement This post discusses RDP lateral movement by leveraging mstscax.dll. Steven also is releasing SharpRDP with corresponding detection guidance for this attack technique. Post:

    Poništi
  10. proslijedio/la je Tweet
    22. sij

    If you're playing with Kerberos and want to view the encrypted parts in Wireshark you can do so with a keytab file. Since impacket was missing structures for this I added a script to my forest trust tools repo which easily allows adding multiple keys:

    Prikaži ovu nit
    Poništi
  11. proslijedio/la je Tweet
    22. sij

    I just published a ~45 page whitepaper on attacking and defending terraform infrastructure as code in GitHub. Includes attack scenarios, hardening, detections, etc. Deep thanks to and for their inspiration and research. ❤️ 1/3

    Prikaži ovu nit
    Poništi
  12. proslijedio/la je Tweet
    20. sij

    PowerShell Obfuscation using SecureString ( I prefer Invoke-Obfuscation )

    Poništi
  13. proslijedio/la je Tweet
    18. sij

    ": a Stealthy Lateral Movement Strategy" is now available to read Read if interested to see a new practical lateral movement Demo (TDS (MS SQL) & FTP): Prototype will be released soon

    Prikaži ovu nit
    Poništi
  14. proslijedio/la je Tweet
    17. sij

    Story time: I had a pentest this week, in a locked down environment. It was a RDP like session. The system was preventing powershell, cmd, and other programs. No internet access. I started looking at LOLBins. I discovered I could use diskshadow.

    Prikaži ovu nit
    Poništi
  15. proslijedio/la je Tweet
    16. sij

    I made a few additions to the PowerUpSQL wiki cheat sheet regarding authentication options for others who might need it:

    Poništi
  16. proslijedio/la je Tweet
    13. sij

    Servers vulnerable to CVE-2019-19781 by country: 🇺🇸 United States: 9,880 🇩🇪 Germany: 2,510 🇬🇧 United Kingdom: 2,028 🇨🇭 Switzerland: 1,094 🇦🇺 Australia: 1,076 🇳🇱 Netherlands: 713 🇨🇦 Canada: 682 🇫🇷 France: 591 🇮🇹 Italy: 568 🇳🇴 Norway: 446 All others: 5,533

    Prikaži ovu nit
    Poništi
  17. proslijedio/la je Tweet
    12. sij

    azucar. Security auditing tool for environments

    Poništi
  18. proslijedio/la je Tweet
    9. sij

    hakrevdns - a small, fast, simple tool for performing reverse DNS lookups en masse.

    Poništi
  19. proslijedio/la je Tweet
    4. sij

    API Security Top 10 2019 is out! It is aimed to educate technology professionals, such as software developers, designers, architects & managers to “create awareness about modern API security issues.”

    Poništi
  20. proslijedio/la je Tweet
    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·