NetExec Version 1.3.0 has been released🔥
Biggest new features:
- New NFS protocol
- SCCM Enumeration
- Coercer_plus module
For the detailed release notes check out: https://t.co/FKRRw5EVqs
Or our wiki as soon as a feature rundown is available.
🧵 (7/) As a side-note: I’ve used this crappy script to automate keytab creation alongside with @_dirkjan’s great keytab[.]py for decrypting KRB5 traffic in Wireshark 👇🏻
https://t.co/wqj99FSQUK
Apollo 2.2.0 has been pushed. This release includes:
- New ifconfig and netstat commands
- Changes to sc to be more dynamic and verbose
- Support for scarecrow_wrapper
- Misc. bug fixes
Thanks to @thespicybyte and @subat0mik for their contributions!
Apollo 2.1.0 has been pushed, introducing a new injection technique leveraging syscalls and NtCreateThreadEx. This is based off the excellent work of @winternl_t and @SolomonSklash, who you should most certainly follow.
Apollo has come a long way since its initial release, and this blog post only begins to touch the surface. Dwight has done such an amazing job at tackling a lot of operator issues and workflows while also leveraging many of Mythic's features. Check it out! :)
With the 2.0 release of Apollo, I wrote a blog highlighting some of the new changes and features, along with a planned roadmap of the project. You can read more here:
https://t.co/VHz9Yp7s4y
So #mimikatz wanted passwords, and Terminal Server has some for us🥝
Cleartext passwords *decrypted* on a fully, up to date Windows 2019 Server
No library, no previous code injection, and doesn't use junk part of memory😉
Ping @jonasLyk, still in testing ... 🤪
@art_2_la_guerre Not a full usage tutorial, but a couple good places to start: Mythic docs https://t.co/QABvtJrcfx, Apollo https://t.co/feM1Pzdlha, https://t.co/42aZiRqw8j, So-con 2020 presentations: Mythic, https://t.co/6jiv6PkbMw, Apollo https://t.co/8e81oiGp5h
Just finished the Zero-Point Security CRTO https://t.co/Je7cIliTBu course & exam exclusively using the Mythic C2 @its_a_feature_ https://t.co/dK43R8WdTu with the Apollo agent @djhohnstein https://t.co/feM1Pzdlha. Fantastic projects, stable throughout labs and exam.
https://t.co/Je7cIliTBu Thanks to @_RastaMouse and @zeropointsecltd for the experience. Great content, great labs, highly recommend this course!! 4 out of 4 exam flags, niiiiiiiice.
https://t.co/l7ZkQtu41a
If you can modify a GPO that applies on hundreds of objects, SharpGPOAbuse now allows you to create an immediate task and only target specific objects. Also, new logon script instructions now show how to execute it on specific users or computers.
https://t.co/TK5k0IKLZy
Credentials Guard enabled preventing access to clear text passwords? N4kedTurtle: "Hold my beer!"
Patch 2 global vars and enjoy your clear text creds again! Btw. Microsoft sees no issue here ;)
Good post with a contribution from @_xpn_: https://t.co/fLZEclJcyS
#redteam#RTO
ICYMI: @djhohnstein posted "Apollo and Mythic: A Myth Worth Retelling"
In this blog post, Dwight dives into some key features of his Apollo payload including Artifact Tracking, Credential Management, Token Manipulation, and much more.
Check it out: https://t.co/qU65yLz1Vu