w0rk3r's Windows Hacking Library
Відкрити в Telegram
Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r
Показати більшеКраїна не вказанаТехнології та додатки42 664
1 663
Підписники
Немає даних24 години
Немає даних7 днів
Немає даних30 днів
Архів дописів
Juicy Potato (abusing the golden privileges)
https://ohpe.github.io/juicy-potato
@WindowsHackingLibrary
Juicy Potato (abusing the golden privileges)
https://decoder.cloud/2018/08/10/juicy-potato
@WindowsHackingLibrary
Remotely Enumerate Anti-Virus Configurations
https://www.fortynorthsecurity.com/remotely-enumerate-anti-virus-configurations
@WindowsHackingLibrary
Ridrelay: Enumerate usernames on a domain where you have no creds by using SMB Relay with low priv.
https://github.com/skorov/ridrelay
@WindowsHackingLibrary
Art of Anti Detection 1 – Introduction to AV & Detection Techniques
https://pentest.blog/art-of-anti-detection-1-introduction-to-av-detection-techniques
@WindowsHackingLibrary
Tools for instrumenting Windows Defender's mpengine.dll
https://github.com/0xAlexei/WindowsDefenderTools
@WindowsHackingLibrary
From Workstation to Domain Admin: Why Secure Administration isn’t Secure and How to Fix it
https://adsecurity.org/wp-content/uploads/2018/08/us-18-Metcalf-From-Workstation-To-Domain-Admin-Why-Secure-Administration-Isnt-Secure-Final.pdf
@WindowsHackingLibrary
DEF CON 26 (2018) – Exploiting Active Directory Administrator Insecurities
https://adsecurity.org/wp-content/uploads/2018/08/2018-DEFCON-ExploitingADAdministratorInsecurities-Metcalf.pdf
@WindowsHackingLibrary
Ps1jacker:
A tool for generating COM Hijacking payload.
https://github.com/darkw1z/Ps1jacker
@WindowsHackingLibrary
ADRecon: Active Directory Recon Blackhat Arsenal 2018
https://www.slideshare.net/mobile/prashant3535/adrecon-bh-usa-2018-arsenal-and-def-con-26-demo-labs-presentation
https://github.com/sense-of-security/adrecon
@WindowsHackingLibrary
SMBetray: Backdooring and Breaking Signatures
https://quickbreach.io/2018/08/12/smbetray-backdooring-and-breaking-signatures
https://github.com/QuickBreach/SMBetray.git
@WindowsHackingLibrary
An implementation of PSExec in C#
https://github.com/malcomvetter/CSExec
@WindowsHackingLibrary
Subverting Sysmon:
Application of a Formalized Security Product Evasion Methodology
Code:
https://github.com/mattifestation/BHUSA2018_Sysmon/tree/master/Code
Slides:
https://github.com/mattifestation/BHUSA2018_Sysmon/blob/master/Slides_Subverting_Sysmon.pdf
Whitepaper:
https://github.com/mattifestation/BHUSA2018_Sysmon/blob/master/Whitepaper_Subverting_Sysmon.pdf
@WindowsHackingLibrary
Driver loader for bypassing Windows x64 Driver Signature Enforcement
https://github.com/hfiref0x/TDL
@WindowsHackingLibrary
Unstoppable Service:
A pattern for a self-installing Windows service in C# with the unstoppable attributes in C#.
https://github.com/malcomvetter/UnstoppableService
@WindowsHackingLibrary
Disabling AMSI in JScript with One Simple Trick
https://tyranidslair.blogspot.com/2018/06/disabling-amsi-in-jscript-with-one.html
@WindowsHackingLibrary
Windows Privilege Escalation Fundamentals
http://www.fuzzysecurity.com/tutorials/16.html
@WindowsHackingLibrary
BloodHound 2.0 released!
https://github.com/BloodHoundAD/BloodHound/releases/tag/2.0
@WindowsHackingLibrary
Golden Ticket Attack Execution Against AD-Integrated SSO providers
https://www.fractalindustries.com/newsroom/blog/gt-attacks-and-sso
@WindowsHackingLibrary
mimiDbg:
PowerShell oneliner to retrieve wdigest passwords from the memory
https://github.com/giMini/mimiDbg
@WindowsHackingLibrary
