In case you guys are fans of the amazing job done by @_RastaMouse and @cobbr_io in Covenant C2 just like me. I've added Reverse Port Forward functionality to it in this fork: https://t.co/Fub1D5Tpp8. Just use the new Grunt: GruntHTTPPortForward and the command: rportfwd.
CVE-2019-10874 Cross Site Request Forgery (CSRF) in the bolt/upload File Upload feature in Bolt CMS 3.6.6 allows remote attackers to execute arbitrary code by uploading a JavaScript file to include executable extensions in the file/edit/config/config.ym... https://t.co/sOAHjieWBV
Interesting backdoor C2 channel to be used here, especially combined with a malicious browser extension for instance. I urge you to look at the current workers running on your browser, you'll be amazed.
Active Directory Security For Red & Blue Team.
-Discovery
-Privilege Escalation
-Defense Evasion
-Credential Dumping
-Lateral Movement
-Persistence
-Defense & Detection https://t.co/miggsqVngk
If you wanted to know what the absolute bottom of the malware food chain looks like, this is it; a Windows batch file that uses certutil to drop and run MEMZ. https://t.co/jlnDg9wCtG
.CSV plain text remote code execution abusing SYLK on Office 2011 for Mac. No warnings, direct execution after opening. Product is EOL, so a fix won’t be issued by @microsoft.