fa
Feedback
w0rk3r's Windows Hacking Library

w0rk3r's Windows Hacking Library

رفتن به کانال در Telegram

Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r

نمایش بیشتر
کشور مشخص نشده استفناوری و برنامه‌ها42 664
1 663
مشترکین
اطلاعاتی وجود ندارد24 ساعت
اطلاعاتی وجود ندارد7 روز
اطلاعاتی وجود ندارد30 روز
آرشیو پست ها
DomainPasswordSpray DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. https://github.com/dafthack/DomainPasswordSpray @WindowsHackingLibrary

MailSniper MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It can be used as a non-administrative user to search their own email, or by an administrator to search the mailboxes of every user in a domain. https://github.com/dafthack/MailSniper @WindowsHackingLibrary

Not a Security Boundary: Bypassing User Account Control Matt Nelson at Derbycon 2017 Microsoft's User Account Control feature, introduced in Windows Vista, has been a topic of interest to many in the security community. Since UAC was designed to force user approval for administrative actions, attackers (and red teamers) encounter UAC on nearly every engagement. As a result, bypassing this control is a task that an actor often has to overcome, despite its lack of formal designation as a security boundary. This talk highlights what UAC is, previous work by others, research methodology, and details several technical UAC bypasses developed by the author. https://youtu.be/c8LgqtATAnE @SecTalks

Gathering AD Data with the Active Directory PowerShell Module https://adsecurity.org/?p=3719

Unofficial Guide to Mimikatz & Command Reference https://adsecurity.org/?page_id=1821

WMIC.EXE Whitelisting Bypass - Hacking with Style, Stylesheets https://subt0x11.blogspot.com.br/2018/04/wmicexe-whitelisting-bypass-hacking.html

Exchange-AD-Privesc. Repository of Exchange privilege escalations to Active Directory This repository provides a few techniques and scripts regarding the impact of Microsoft Exchange deployment on Active Directory security. https://github.com/gdedrouas/Exchange-AD-Privesc