Yo, ho, was doing a bit of pentesting today. Inspired by @ippsec I shall give you my short story of 3 different paths to DA in 5 hours of work (hot pics are inside). Enjoy!
Exemple d’attaque à #SigSegv2 par Andrei Dumitrescu via #WMI par latéralisation via uniquement #DCOM TCP/135 https://t.co/a0P3O69ysR #RTFM@sigsegv_event
Pour le week-end, voici un nouvel article présentant une technique pour lire le contenu d'un dump de lsass **à distance**, évitant ainsi la détection des AV (#mimikatz) et le téléchargement de dumps volumineux (80-150Mo).
Bon week-end ! 🙃
https://t.co/ousCuq8wU5
The #WMI#Shell project - proof-of-concept of a WMI-only remote access to a #Windows machine (so no need for open SMB ports) is archived here:
https://t.co/g97RPrURdZ