w0rk3r's Windows Hacking Library
Kanalga Telegram’da o‘tish
Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r
Ko'proq ko'rsatishMamlakat belgilanmaganTexnologiyalar & Aralashmalar42 664
1 663
Obunachilar
Ma'lumot yo'q24 soatlar
Ma'lumot yo'q7 kun
Ma'lumot yo'q30 kun
Postlar arxiv
SharpPack: The Insider Threat Toolkit (Release)
https://www.mdsec.co.uk/2018/12/sharppack-the-insider-threat-toolkit
@WindowsHackingLibrary
Microsoft Powerpoint as Malware Dropper
https://marcoramilli.blogspot.com/2018/11/microsoft-powerpoint-as-malware-dropper.html
@WindowsHackingLibrary
Pass-the-Cache to Domain Compromise
https://medium.com/@jamie.shaw/pass-the-cache-to-domain-compromise-320b6e2ff7da
@WindowsHackingLibrary
An ACE in the Hole Stealthy Host Persistence via Security Descriptors
https://www.youtube.com/watch?v=ExO535CITXs
@SecTalks
Hunting in Active Directory: Unconstrained Delegation & Forests Trusts
https://posts.specterops.io/hunting-in-active-directory-unconstrained-delegation-forests-trusts-71f2b33688e1
@BlueTeamLibrary
Not A Security Boundary: Breaking Forest Trusts
https://posts.specterops.io/not-a-security-boundary-breaking-forest-trusts-cd125829518d
@WindowsHackingLibrary
Microsoft Windows - DfMarshal Unsafe Unmarshaling Privilege Escalation
https://www.exploit-db.com/exploits/45893
@WindowsHackingLibrary
Subverting Sysmon: Application of a Formalized Security Product Evasion Methodology
https://www.youtube.com/watch?v=R5IEyoFpZq0
@SecTalks
Hardening Hyper-V through Offensive Security Research
https://www.youtube.com/watch?v=025r8_TrV8I
@SecTalks
Microsoft Build Engine Compromise - Part One
http://subt0x11.blogspot.com/2018/11/microsoft-build-engine-compromise-part_13.html
@WindowsHackingLibrary
More than One Way to Skin a Hack
An Example in Getting Around CrowdStrike Endpoint Protection
https://link.medium.com/rnyWKqUNOR
@WindowsHackingLibrary
Bypassing Microsoft XOML Workflows Protection Mechanisms using Deserialisation of Untrusted Data
https://www.nccgroup.trust/uk/our-research/technical-advisory-bypassing-microsoft-xoml-workflows-protection-mechanisms-using-deserialisation-of-untrusted-data
@WindowsHackingLibrary
UAC Bypass by Mocking Trusted Directories
https://link.medium.com/JQTYSxLmJR
@WindowsHackingLibrary
Oh No! AMSI blocked the AMSI Bypass! What Now?
https://0x00-0x00.github.io/research/2018/11/09/Oh-No!-Amsi-blocked-the-bypass.html
@WindowsHackingLibrary
Recovering Plaintext Domain Credentials from WPA2 Enterprise on a Compromised Host
https://0x00-0x00.github.io/research/2018/11/06/Recovering-Plaintext-Domain-Credentials-From-WPA2-Enterprise-on-a-compromised-host.html
@WindowsHackingLibrary
Operational Challenges in Offensive C#
https://posts.specterops.io/operational-challenges-in-offensive-c-355bd232a200
@WindowsHackingLibrary
Playing with Relayed Credentials
https://www.secureauth.com/blog/playing-relayed-credentials
@WindowsHackingLibrary
RunDLL32 your .NET (AKA DLL exports from .NET)
https://blog.xpnsec.com/rundll32-your-dotnet
@WindowsHackingLibrary
