Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @__invictus_
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @__invictus_
-
Prikvačeni tweet
Re-sharing my research on abusing Autocad as part of a targeted attack - helpful if you have a red team this summer against an engineering and/or architecture firm, or found some autocad users during osint. https://labs.mwrinfosecurity.com/blog/autocad-designing-a-kill-chain/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
Load encrypted PE from XML Attribute. MSBuild is still the best.
https://github.com/XwingAngel/PELoader/ …
MSBuild sets Property then calls Execute.
Use this example to decouple payloads & prove that all security products have a "Single File Bias".
Decouple payloads to subvert detection.pic.twitter.com/648rujlLQn
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
https://youtu.be/1o3smEYpMi4 Just for you, custom version via execute-assembly.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
On successful compromise of the user endpoint, the red team deployed their ultimate weaponhttps://twitter.com/SamNChiet/status/1222647282237169671 …
0:45Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
seriously considering tweeting at length about made up and unverifiable threat actor groups using high-level language to bolster my infosec thought leader credentials
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
If
@tiraniddo's DotnetToJScript is blocked on newer versions of Windows or if it gets flagged by AMSI, you can use Excel automation via a COM object as an alternative to execute shellcode from JScript or VBScript w/o touching disk. PoC for x86 & x64 here:https://github.com/outflanknl/Scripts/blob/master/ShellcodeToJScript.js …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
cookie_crimes : Read local Chrome cookies without root or decrypting : https://github.com/defaultnamehere/cookie_crimes … sharpcookiemonster : https://jmpesp.me/sharpcookiemonster/ … cc
@m0rv4iHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
Revisiting RDP lateral movement https://posts.specterops.io/revisiting-remote-desktop-lateral-movement-8fb905cb46c3 … and releasing a project that will be part of a bigger tool coming next week
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
#BlueTeam command-line MSBuild.exe detection's got your#RedTeam down? How about MSBuild without MSBuild.exe? https://s5.gifyu.com/images/msbuild_api.gif …https://github.com/rvrsh3ll/MSBuildAPICaller …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
Hiding malicious code with “Module Stomping”: Part 1 : https://blog.f-secure.com/hiding-malicious-code-with-module-stomping/ … Part 2 : https://blog.f-secure.com/hiding-malicious-code-with-module-stomping-part-2/ … Part 3 : https://blog.f-secure.com/cowspot-real-time-module-stomping-detection/ … cc
@AlizTheHax0r ModuleStomping :https://github.com/countercept/ModuleStomping …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
New http://ADSecurity.org blog post on the Microsoft Cloud: What is Azure Active Directory? https://adsecurity.org/?p=4211 Post covers what Azure AD is, how it compares to on-prem Active Directory, connecting via PowerShell, and password spraying attacks, mitigation, & detection.pic.twitter.com/GDS3rOzsW0
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
Spray-AD, a new
@OutflankNL Kerberos password spraying tool for Cobalt Strike that might come in handy when assessing Active Directory environments for weak passwords (generates event IDs 4771 instead of 4625).https://github.com/outflanknl/Spray-AD …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je TweetPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
invictus proslijedio/la je Tweet
Brutal from
@rickygervais - honest rather than funny. Completely irrelevant awards event nowadays anyway. “Give all the awards to Netflix” !!https://twitter.com/nbc/status/1214008610667155456 …
7:49Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
Just published some thoughts on red teaming, how to approach it, procure it and get in to it...https://link.medium.com/eV1myC6NM2
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
The best tweet so far on this whole
#ost debate/drama/ridiculousnesshttps://twitter.com/domchell/status/1209476028114059266 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je TweetPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
invictus proslijedio/la je Tweet
If someone takes the time to release something they learned publicly that can be used for offsec purposes, be the first to write the detection, not the first to complain. Those that complain just show they aren’t competent enough to write detections.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
My Mrs gets the best DMs - I wonder what it's like to feel like a "serdine"pic.twitter.com/xgZgBqdnE4
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
invictus proslijedio/la je Tweet
Check out my new blog post on how edit rights on an OU can be abused to compromise any of its child objects. Thanks to
@kevin_robertson,@harmj0y and@gentilkiwi as a number of their tools were used in the PoC. https://labs.f-secure.com/blog/ou-having-a-laugh/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
