w0rk3r's Windows Hacking Library
Відкрити в Telegram
Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r
Показати більшеКраїна не вказанаТехнології та додатки42 664
1 663
Підписники
Немає даних24 години
Немає даних7 днів
Немає даних30 днів
Архів дописів
Security Descriptor Auditing Methodology: Investigating Event Log Security
https://posts.specterops.io/security-descriptor-auditing-methodology-investigating-event-log-security-d64f4289965d
@WindowsHackingLibrary
Understanding and Defending Against Access Token Theft: Finding Alternatives to winlogon.exe
https://posts.specterops.io/understanding-and-defending-against-access-token-theft-finding-alternatives-to-winlogon-exe-80696c8a73b
@WindowsHackingLibrary
Building and Attacking an Active Directory lab with PowerShell (Because everyone needs a lab)
https://1337red.wordpress.com/building-and-attacking-an-active-directory-lab-with-powershell
@WindowsHackingLibrary
How to: Kerberoast like a boss
https://www.pentestpartners.com/security-blog/how-to-kerberoast-like-a-boss
@WindowsHackingLibrary
Shhmon — Silencing Sysmon via Driver Unload
https://posts.specterops.io/shhmon-silencing-sysmon-via-driver-unload-682b5be57650
@WindowsHackingLibrary
Inter-Realm Key Roasting (well... within the first 30 days)
https://blog.xpnsec.com/inter-realm-key-roasting
@WindowsHackingLibrary
Initial Metasploit Exploit Module for BlueKeep (CVE-2019-0708)
https://blog.rapid7.com/2019/09/06/initial-metasploit-exploit-module-for-bluekeep-cve-2019-0708
@WindowsHackingLibrary
The Art of Becoming TrustedInstaller - Task Scheduler Edition
https://tyranidslair.blogspot.com/2019/09/the-art-of-becoming-trustedinstaller.html
@WindowsHackingLibrary
C3: Custom Command and Control
https://labs.mwrinfosecurity.com/tools/c3
Github:
https://github.com/mwrlabs/C3
@WindowsHackingLibrary
Obtaining D.C. Hashes Within Google Cloud In 5 Easy Steps
Without touching the actual domain controller
https://mrtn.no/obtaining-d-c-hashes-within-google-cloud
@WindowsHackingLibrary
Cobalt Strike’s Process Injection: The Details
https://blog.cobaltstrike.com/2019/08/21/cobalt-strikes-process-injection-the-details
@WindowsHackingLibrary
Offensive Lateral Movement
https://hausec.com/2019/08/12/offensive-lateral-movement
@WindowsHackingLibrary
Offensive P/Invoke: Leveraging the Win32 API from Managed Code
https://posts.specterops.io/offensive-p-invoke-leveraging-the-win32-api-from-managed-code-7eef4fdef16d
@WindowsHackingLibrary
Down the Rabbit-Hole...
Understanding and Exploiting the CTF protocol
https://googleprojectzero.blogspot.com/2019/08/down-rabbit-hole.html
https://github.com/taviso/ctftool
@WindowsHackingLibrary
Constructing Kerberos Attacks with Delegation Primitives - Defcon Workshop
From Kerberos 101 to advanced attack chains
https://shenaniganslabs.io/media/Constructing%20Kerberos%20Attacks%20with%20Delegation%20Primitives.pdf
@WindowsHackingLibrary
Local Privilege Escalation on Windows through the lock screen, NTLM relay, and RBCD 🤯
https://shenaniganslabs.io/2019/08/08/Lock-Screen-LPE.html
@WindowsHackingLibrary
How to Bypass WDAC with dbgsrv.exe
https://www.fortynorthsecurity.com/how-to-bypass-wdac-with-dbgsrv-exe
@WindowsHackingLibrary
