Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @drakesarath
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @drakesarath
-
SarathKumar21 proslijedio/la je Tweet
Thank you all so much for coming to my
#Shmoocon talk on threat modeling! You can check out my slides (complete with references) here: https://www.slideshare.net/KatieNickels/resistance-isnt-futile-a-practical-approach-to-threat-modeling …. Thanks to@heidishmoo,@gdead, and the amazing@Shmoocon volunteer crew for having me and making this event possible!pic.twitter.com/GUw6R8tQ14
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Speaking at
#ShmooCon@shmoocon was awesome, thank you for the opportunity! For anyone interested in slides, check them out here in SpeakerDeck:https://speakerdeck.com/forensicitguy/whitelisting-ld-preload-for-fun-and-no-profit …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Here are the slides from my
@shmoocon#firetalk. I fixed a few typos and added links and resources. http://www.nepeeringforum.org/troutman/troutman-DoH-DoT-QuadX-Da-Faq.pdf …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Slides of Roger's
#ShmooCon talk on "5G protocol vulnerabilities and exploits" here: http://rogerpiquerasjover.net/5G_ShmooCon_FINAL.pdf … [PDF]pic.twitter.com/znSgK1MOBb
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Thank you
#shmoocon! The slides are out:https://www.slideshare.net/SamanthaMosley3/teen-hacks-for-obfuscating-identity-on-social-media …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Core
#DFIR skills come from reading Tanenbaum on operating systems, Windows internals, TCP/IP illustrated volume 1 & Carrier on file systemsHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
WinPwnage. Elevate, UAC bypass, persistence, privilege escalation, dll hijack techniqueshttps://github.com/rootm0s/WinPwnage …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
some exploits tend to load directly ntoskrnl.exe (indows Kernel) to do some offsets calcs for some critical kernel structs or global vars ... in normal condition this should be rare so won't harm to add it to your sysmon/EDR config.pic.twitter.com/VDststNMUQ
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet

#EDR? Yeah, me too! But if you're chasing a bad guy across a > 100K-node environment you're probably pivoting to your#SIEM.
@amrandazz shares some of the (many) ways we use@exabeam as our "cheat code" when responding@expel_io.
https://expel.io/blog/exabeam-incident-investigators-cheat-code/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
#Windows oneliners to download remote payload and execute arbitrary codehttps://arno0x0x.wordpress.com/2017/11/20/windows-oneliners-to-download-remote-payload-and-execute-arbitrary-code/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Python Script to access ATT&CK content available in STIX via a public TAXII server
#infosec#blueteam#DFIRhttps://github.com/hunters-forge/ATTACK-Python-Client …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
#DFIR Looking for more memory dumps to dig into? Here is my newest one! http://bit.ly/FOR526_Memory -> Win10x64_18362 DevVM Gargoyle-laden (thx@jalospinoso) acquired with dumpit (thx@msuiche) & analyzed with win10compression support (thx@MalwareMechanic)Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
ProTip for
@sqlitebrowser users. Colorize the database cells! My current theme is straight up from the 90s but I can see the BLOBs and non-null cells very easily. Helps put together queries from large databases.#DFIRpic.twitter.com/yhxGQrM6Sm
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Like
@graylog2 and@TheHive_Project?! Then you’ll love our write up on how to integrate them. http://blog.reconinfosec.com/integrating-graylog-with-thehive/ …#infosec#DFIRHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Announcing the release of Osquery in a Box: A simple collection of docker-compose and other configuration that will bootstrap an osquery, Fleet, ELK stack environment in under 5 mins. Been wanting to try out these technologies? Now's your chance. https://github.com/dactivllc/osquery-in-a-box …
#osqueryHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Check out Tony's tool to whitelist shared objects loaded via LD_PRELOAD: https://github.com/ForensicITGuy/libpreloadvaccine …
#shmoocon@ForensicITGuyPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Happy Friday hackers! Nitesh
@ideaengine007 found a critical RCE vulnerability in Jenkins that led us to discover a Bitcoin mining service running on a DoD website
. Head over to the disclosed report to see all the details! Thanks for being
Niteshhttps://hackerone.com/reports/768266 Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
The Microsoft Defender ATP research team has also released a Threat Analytics report that customers can use to get technical info about the techniques and tools used by the threat, the impact to the organization, advanced hunting queries, mitigation status, and recommendations.pic.twitter.com/xerMufUpQD
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
FakeLogonScreen - A utility to fake the Windows logon screen in order to obtain the user's password. The password entered is validated against the Active Directory or local machine to make sure it is correct and is then saved to disk.https://github.com/bitsadmin/fakelogonscreen …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
SarathKumar21 proslijedio/la je Tweet
Kerberoasting, exploiting unpatched systems - a day in the life of a Red Teamerhttp://niiconsulting.com/checkmate/2018/05/kerberoasting-exploiting-unpatched-systems-a-day-in-the-life-of-a-red-teamer/ …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.