TaskHound hunts privileged Windows scheduled tasks and exports them for BloodHound attack path analysis.
https://t.co/JaFf8bkrTR
#infosec#pentest#redteam
NetExec Lab is a set of hands-on labs used in the NetExec workshop and CTF to help you mastering NetExec for your next pentest engagement.
https://t.co/QFy1uoxQ5Y
#infosec#pentest
Extracts browser-stored data such as refresh tokens, cookies, saved credentials and more from modern Chromium-based and Gecko-based browsers (Chrome, Microsoft Edge, Firefox, Opera, Opera GX and Vivaldi).
https://t.co/cpUCEEdGVj
#infosec#pentest#redteam
Many cybersecurity myths are outdated and distract from real risks. An open letter calling for practical, evidence-based security advice.
Read more: https://t.co/ITWqxtpb9Y
#infosec
ProfileHound is a tool that enumerates Windows domain user profiles via the C$ share and exports them to BloodHound as a HasUserProfile edge making it easy to see which users have profiles on which hosts.
https://t.co/c10hjrEKUk
#infosec#pentest#redteam
"HELP! MY ACCOUNT GOT HACKED!" - Business Email Compromise (BEC) Part 1
https://t.co/xwuLf1bRuy
"The Anatomy of a Business Email Compromise Attack" - Business Email Compromise (BEC) Part 2
https://t.co/QlHgpZjmlt
#infosec#blueteam
Harden Windows Security by @CyberCakeX is an open source PowerShell module (with GUI/CLI/Unattended mode) that documents, automates and hardens Windows security settings based on supported Microsoft mechanisms
https://t.co/7LzP8tflbl
#infosec#blueteam
If you have Active Directory Certificate Services (ADCS) in your environment, run Locksmith now!
In Active Directory Security Assessments, we have found critical security issues in *most* ADCS configurations.
The great thing about Locksmith is that it doesn't just highlight the security issues in your ADCS environment, but also provides the command to remediate it!
If you're a pentester/red teamer, Locksmith is great for you to provide remediation recommendations to your customers.
https://t.co/vvtBeeMLuR
#ActiveDirectorySecurityTip
Prowler by @ProwlerCloud is an open-source security tool that helps assess and enforce security best practices across AWS, Azure, Google Cloud and Kubernetes.
https://t.co/wsXGKkrRAM
#infosec#BlueTeam
This is so much! 🔥🔥😎
Found two new Potato triggers just today. Not only Potato but can also be used for LPE as remote auth is done which could be relayed to LDAP without Signing enabled. Or relayed to ADCS for a certificate.
https://t.co/H83AIxtskn
Ransomware Tool Matrix by @BushidoToken: This repository lists tools used by ransomware gangs. Defenders can detect and block these commonly reused tools to stop intrusions.
https://t.co/0BJOmKaVor
#infosec#blueteam
ArgFuscator is an open-source web app that generates obfuscated command lines for common system tools. Great for testing your defenses against real-world attack techniques.
https://t.co/FfokdhCweh
#infosec#pentest#redteam#blueteam
How well do you protect your privacy?
The Privacy Checkup helps you assess your online surveillance defenses and take steps to protect your data.
https://t.co/RujcfF6TrY (English, Deutsch, Español)
#privacy#infosec
A great read on the exploitation of VMware vulnerabilities - from both attacker and defender perspectives - plus practical recommendations to strengthen your security posture.
Breaking the Virtual Barrier: From Web-Shell to Ransomware
https://t.co/zzTHTPDF57
#infosec#blueteam
Eine kriminelle Organisation hinter mehr als 75.000 Fake-Shops, >1M Bestellungen & >$50M Schaden. Einblick in ihr ausgeklügeltes System & wie sie Käufer täuschen.
#38C3: "Fake-Shops von der Stange: BogusBazaar" mit @kaibiermann und kantorkel.
https://t.co/UsvhSIwKHd
#infosec
Twitter:
"Mastering Sysmon: Deploying, Configuring, and Fine-Tuning" by @dfirinsights
A free mini eBook for #DFIR professionals with practical steps to deploy, fine-tune, and start logging with Sysmon.
https://t.co/J76IWHa7Pj
#infosec#blueteam
Carseat by @0xthirteen is a Python implementation of GhostPack's Seatbelt, a situational awareness tool for analyzing Windows security configurations.
https://t.co/deYuqX7PtZ
#infosec#pentest#redteam