Lares

@Lares_

One of the world's premier Penetration Testing, App Sec & Red Team organizations

Vrijeme pridruživanja: lipanj 2009.

Tweetovi

Blokirali ste korisnika/cu @Lares_

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @Lares_

  1. proslijedio/la je Tweet
    Poništi
  2. proslijedio/la je Tweet
    26. sij

    Interesting visualization of security certification mappings, courtesy of /u/sinecureLife on Reddit.

    Poništi
  3. 20. sij

    Ransomware attack on Picanol paralyzes production at plants in Belgium, Romania, and China -

    Poništi
  4. proslijedio/la je Tweet
    17. sij

    A is more than an expensive vulnerability scan. Let , Quentin Rhoads-Herrera, and Rapid7 show you how to spend your tax dollars wisely.

    Poništi
  5. 13. sij

    Introducing the New MITRE ATT&CK Framework for Industrial Control Systems -

    Poništi
  6. 13. sij
    Poništi
  7. 13. sij

    New on the Lares blog - NCUA Cites Cybersecurity as a 2020 Supervisory Priority:

    Poništi
  8. proslijedio/la je Tweet
    9. sij

    Do you struggle to understand in environment ? This new article may help clarify things by simply explaining how Kerberos works. It is the first of a serie of posts about attacking Active Directory. Stay tuned 🙃

    Poništi
  9. proslijedio/la je Tweet
    5. sij

    Anyone who's been a security consultant knows that vulnerabilities you discover while pen testing a customer (a) belong to the customer and (b) are under NDA. The few random CVEs I have are because the customer wanted us to handle disclosure.

    Prikaži ovu nit
    Poništi
  10. proslijedio/la je Tweet
    7. sij

    Happy 2020 -- v0.1.0 is released! This significant update migrates to Python 3.x (RIP 2.x), adds new core functionality & enhanced logging, and overhauls the blacklist feature. Try it out on your favorite platform: $ pip3 install dorkbot

    Prikaži ovu nit
    Poništi
  11. proslijedio/la je Tweet
    9. sij

    Have reproduced Citrix SSL VPN pre-auth RCE successfully on both local and remote. Interesting bug!

    Poništi
  12. 8. sij

    MITRE Releases ATT&CK Knowledge Base for Industrial Control Systems -

    Poništi
  13. proslijedio/la je Tweet
    23. pro 2019.

    Remote Windows credentials dump process automation. Can be used to dump Windows credentials remotely and later extract clear text with Mimikatz offline.

    Poništi
  14. proslijedio/la je Tweet

    Solid secure boot bypass write-up. Particularly keen on the honesty around strings + OS making reverse engineering far quicker.

    Poništi
  15. proslijedio/la je Tweet
    21. pro 2019.

    Last project of 2019. I created an image-based C2 channel proof of concept that posts/retrieves stego'd images on Imgur. As a PoC only, I've simulated a proper implant in Python. The Framework is called Dali, after the artist. For fun & to learn!

    Prikaži ovu nit
    Poništi
  16. proslijedio/la je Tweet
    20. pro 2019.

    The present everyone has been asking for is here! We are excited to announce the beta release of TRAM, a tool to aid in mapping reports to ATT&CK. You can find our latest blog with all the details at and the source code at .

    Poništi
  17. proslijedio/la je Tweet
    19. pro 2019.

    Our group in MS is about to undergo a huge hiring sprint, lasting the next 3-4 months. From sales, tech sales, customer facing technical experts, and incident response professionals. Travel included. DM me for details. Pls RT for reach and diversity. Thanks!

    Prikaži ovu nit
    Poništi
  18. proslijedio/la je Tweet
    14. pro 2019.

    Red teaming a multi-domain environment and need to find all connections to a different domain or forest? Have solid data? Find all cross-domain privileges and user logons with this query in the console:

    Prikaži ovu nit
    Poništi
  19. proslijedio/la je Tweet
    6. pro 2019.

    secretsdump(.py) slow processing your NTDS.dit? Soon not anymore! With 's esedb parser implementation processing time of a 5GB dit file went from 45 minutes down to 1.5 minutes 😲! Code will be released as open source when fully ready 🙂

    Poništi
  20. proslijedio/la je Tweet
    4. pro 2019.

    More complete screenshot of my terminal and curl request. STOP IT / /

    Prikaži ovu nit
    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·