Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @BorjaMerino
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @BorjaMerino
-
Prikvačeni tweet
Retro shellcoding for current threats: rebinding sockets in Windows https://www.shelliscoming.com/2019/11/retro-shellcoding-for-current-threats.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
Load encrypted PE from XML Attribute. MSBuild is still the best.
https://github.com/XwingAngel/PELoader/ …
MSBuild sets Property then calls Execute.
Use this example to decouple payloads & prove that all security products have a "Single File Bias".
Decouple payloads to subvert detection.pic.twitter.com/648rujlLQn
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
Some study notes on LSASS hooking for harvesting interactive logon credentials. https://ired.team/offensive-security/credential-access-and-credential-dumping/intercepting-logon-credentials-by-hooking-msv1_0-spacceptcredentials … Thanks to
@_xpn_ for his inspiring posts about mimikatz.Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
modexp is one of my fav. researchers; while I often skim on details he is killing it with posts that combine an extensive and comprehensive research on interesting and often nuanced topics and a very well written narrative top quality right therehttps://modexp.wordpress.com/2019/12/08/shellcode-compression/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
ppldump : Injects MiniDumpWriteDump() Shellcode into PPL procs (lsass demo) to dump memory. Got better tools, so useless to me now. Note sometimes the threads lock after the APC is queued, causing MiniDumpWriteDump to fail. Just resume the thread(s) https://github.com/realoriginal/ppldump …pic.twitter.com/49f7ewupKo
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
My blog post about CVE-2020-0601 is online! I hope you guys enjoy it, I didn't sleep for 2 days now, pardon me if I made some mistakes :) Feel free to point out any mistakes!https://blog.layle.io/uncovering-cve-2020-0601/ …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Windows kernel explorer: A free powerful Windows kernel research toolhttps://github.com/AxtMueller/Windows-Kernel-Explorer …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Borja Merino proslijedio/la je Tweet
No fancy EDR required to capture CVE-2020-0601 attempts (after patching). Just ensure you're forwarding Application log events. Currently, CVE-2020-0601 is the only Microsoft code (AFAIK) that calls the CveEventWrite API so event noise is not a concern. https://docs.microsoft.com/en-us/windows/win32/api/securitybaseapi/nf-securitybaseapi-cveeventwrite …pic.twitter.com/JWPnaMaIqB
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
C++ for Hackers: How C++ can be a vital tool for infosec developers https://vimeo.com/384348826
@780thC@nostarch#cppHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Windows Process Injection in 2019 https://i.blackhat.com/USA-19/Thursday/us-19-Kotler-Process-Injection-Techniques-Gotta-Catch-Them-All-wp.pdf …. Nice compilation with functional examples.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
Dear
#gobuster users, if you're a fan of the tool and are keen to throw a few dollarydoos at it, please head over here: All proceeds received before the end of Jan (including the current balance of USD $271) will be donated to the Rural Fire Service here in Australia.Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
I've developed a new technique for bypassing firewalls/NATs and producing full TCP/UDP session to targeted user. Anyone have RCE for a service that's typically only run behind NATs (eg desktop software like Sonos, Spotify, Dropbox, etc which bind to *) and want to merge projects?
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
One-Way Shellcode for firewall evasion using Out Of Band data https://www.shelliscoming.com/2019/03/one-way-shellcode-for-firewall-evasion.html …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
APT34 partial tools leak (repost as this got taken down very quickly)https://mega.nz/#!tdMGnIwb!NyTVaKhahP8dQypmf1Z10Gy-Lx_9HyaRuVxiSkX7p-M …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Nice post of
@AlizTheHax0r describing how to detect Module Stomping: https://blog.f-secure.com/cowspot-real-time-module-stomping-detection/ … <--Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
I'm going to donate a bunch of funds I've received from live streams to this cause, I'll match it personally, and my company will be matching it dollar for dollar. If you can give, please consider it!https://twitter.com/ODT_M/status/1211837752762724352 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
The last
#PEsieve (https://github.com/hasherezade/pe-sieve/releases/tag/v0.2.4 …) and#HollowsHunter (https://github.com/hasherezade/hollows_hunter/releases/tag/v0.2.4 …) this year! (v0.2.4) - some improvements & many important fixes, so please don't miss it.pic.twitter.com/Xyoqp7n0IM
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
Link to the repo: https://github.com/andreafioraldi/qasan … The gap between source and binary fuzzing is now smaller :)
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Borja Merino proslijedio/la je Tweet
Empire 3.0 is officially here ...and just in time for Christmas! Blog: https://www.bc-security.org/post/the-empire-3-0-strikes-back … GitHub: https://github.com/BC-SECURITY/Empire …
#Powershell#Cybersecurity#infosecHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Remote Code Execution in restricted Windows environments
#xiiijornadasccncerthttps://www.youtube.com/watch?v=Hir5LGEAgAA …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.