es
Feedback
w0rk3r's Windows Hacking Library

w0rk3r's Windows Hacking Library

Ir al canal en Telegram

Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r

Mostrar más
El país no está especificadoTecnologías y Aplicaciones42 664
1 663
Suscriptores
Sin datos24 horas
Sin datos7 días
Sin datos30 días
Archivo de publicaciones
Windows RpcEptMapper Service Insecure Registry Permissions EoP https://itm4n.github.io/windows-registry-rpceptmapper-eop @WindowsHackingLibrary

Using Custom Covenant Listener Profiles & Grunt Templates to Elude AV https://offensivedefence.co.uk/posts/covenant-profiles-templates @WindowsHackingLibrary

Using and detecting C2 printer pivoting https://labs.f-secure.com/blog/print-c2 @WindowsHackingLibrary

Process Herpaderping: Process Herpaderping is a method of obscuring the intentions of a process by modifying the content on disk after the image has been mapped. This results in curious behavior by security products and the OS itself. https://jxy-s.github.io/herpaderping @WindowsHackingLibrary

Introduction to Threat Intelligence ETW A quick look into ETW capabilities against malicious API calls. https://undev.ninja/introduction-to-threat-intelligence-etw @BlueTeamLibrary

A different way of abusing Zerologon (CVE-2020-1472) Using the Printer Bug with zerologon to relay to DSRUAPI and DCSYNC (No password reset needed) https://dirkjanm.io/a-different-way-of-abusing-zerologon @WindowsHackingLibrary

Zerologon: Unauthenticated domain controller compromise by subverting Netlogon cryptography (CVE-2020-1472) https://www.secura.com/pathtoimg.php?id=2055 @WindowsHackingLibrary