w0rk3r's Windows Hacking Library
Kanalga Telegram’da o‘tish
Manual job, I'm not a bot ;) @BlueTeamLibrary @W0rk3r
Ko'proq ko'rsatishMamlakat belgilanmaganTexnologiyalar & Aralashmalar42 664
1 663
Obunachilar
Ma'lumot yo'q24 soatlar
Ma'lumot yo'q7 kun
Ma'lumot yo'q30 kun
Postlar arxiv
Revisiting TTPs: TimeStomper
https://posts.specterops.io/revisiting-ttps-timestomper-622d4c28a655
@WindowsHackingLibrary
Antimalware Scan Interface (AMSI) — A Red Team Analysis on Evasion
https://iwantmore.pizza/posts/amsi.html
@WindowsHackingLibrary
Combining NTLM Relaying and Kerberos delegation
https://chryzsh.github.io/relaying-delegation
@WindowsHackingLibrary
Syncing Into the Shadows
https://jsecurity101.com/2019/Syncing-into-the-Shadows
@WindowsHackingLibrary
HostRecon: A Situational Awareness Tool
https://www.blackhillsinfosec.com/hostrecon-situational-awareness-tool
@WindowsHackingLibrary
Case Study: Password Analysis with BloodHound
https://posts.specterops.io/case-study-password-analysis-with-bloodhound-a3d264736c7
@WindowsHackingLibrary
Bypassing AD account lockout for a compromised account
https://medium.com/@markmotig/bypassing-ad-account-lockout-for-a-compromised-account-5c908d663de8
@WindowsHackingLibrary
Exploiting PrivExchange
https://chryzsh.github.io/exploiting-privexchange
@WindowsHackingLibrary
Azure AD Connect password extraction
https://github.com/fox-it/adconnectdump
@WindowsHackingLibrary
Finding Weaknesses Before the Attackers Do
https://www.fireeye.com/blog/threat-research/2019/04/finding-weaknesses-before-the-attackers-do.html
@WindowsHackingLibrary
An SMB Relay Race – How To Exploit LLMNR and SMB Message Signing for Fun and Profit
https://www.blackhillsinfosec.com/an-smb-relay-race-how-to-exploit-llmnr-and-smb-message-signing-for-fun-and-profit
@WindowsHackingLibrary
SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GPO) in order to compromise the objects that are controlled by that GPO.
https://github.com/mwrlabs/SharpGPOAbuse
@WindowsHackingLibrary
Commando VM: The First of Its Kind Windows Offensive Distribution
https://www.fireeye.com/blog/threat-research/2019/03/commando-vm-windows-offensive-distribution.html
@WindowsHackingLibrary
CommandoVM - a fully customized, Windows-based security distribution for penetration testing and red teaming
https://github.com/fireeye/commando-vm
@WindowsHackingLibrary
Excel4-DCOM
PowerShell and Cobalt Strike scripts for lateral movement using Excel 4.0 / XLM macros via DCOM (direct shellcode injection in Excel.exe).
https://github.com/outflanknl/Excel4-DCOM
@WindowsHackingLibrary
Faction C2 Framework
A modern, flexible C2 framework
https://github.com/factionc2
@WindowsHackingLibrary
Kerbrute
A tool to quickly bruteforce and enumerate valid Active Directory accounts through Kerberos Pre-Authentication
https://github.com/ropnop/kerbrutehttps://github.com/ropnop/kerbrute
@WindowsHackingLibrary
