ru
Feedback
w0rk3r's Windows Hacking Library

w0rk3r's Windows Hacking Library

Открыть в Telegram

Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r

Больше
1 663
Подписчики
Нет данных24 часа
Нет данных7 дней
Нет данных30 дней
Архив постов
Hide *Exploitable* Extended-Rights (including DCSync privs) to remain persistence https://medium.com/@huykha/hide-exploitable-extended-rights-to-remain-persistence-92a2e1d3670d @WindowsHackingLibrary

CVE-2019-1040 scanner Checks for CVE-2019-1040 vulnerability over SMB. The script will establish a connection to the target host(s) and send an invalid NTLM authentication. If this is accepted, the host is vulnerable to CVE-2019-1040 and you can execute the MIC Remove attack with ntlmrelayx. Note that this does not generate failed login attempts as the login information itself is valid, it is just the NTLM message integrity code that is absent, which is why the authentication is refused without increasing the badpwdcount. https://github.com/fox-it/cve-2019-1040-scanner @WindowsHackingLibrary

Sliver: A general purpose cross-platform implant framework that supports C2 over Mutual-TLS, HTTP(S), and DNS. https://github.com/BishopFox/sliver @WindowsHackingLibrary