ch
Feedback
w0rk3r's Windows Hacking Library

w0rk3r's Windows Hacking Library

前往频道在 Telegram

Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r

显示更多
未指定国家技术与应用42 664
1 663
订阅者
无数据24 小时
无数据7 天
无数据30 天
帖子存档
Bypasses Microsoft's Anti-Malware Scan Interface for a PowerShell session process started through the "Start-Job" cmdlet, the PID of which is accessed using "Enter-PSHostProcess" https://github.com/securemode/Bypass-AMSI9000 @WindowsHackingLibrary

Wagging the Dog: Abusing Resource-Based Constrained Delegation to Attack Active Directory https://shenaniganslabs.io/2019/01/28/Wagging-the-Dog.html @WindowsHackingLibrary

Technical White Paper: Finding and Exploiting the Check Point ZoneAlarm Anti-Virus for Local Privilege Escalation https://www.illumant.com/blog/2019/01/16/check-point-anti-virus-technical-white-paper @WindowsHackingLibrary