Ancora truffe sul Superbonus, ancora soldi sottratti agli italiani. È l’eredità delle trovate elettorali di Conte che la Nazione continua a pagare a caro prezzo.
@_RastaMouse Sure!
Try also, on an EC2 machine, to run the command (with each user, root or lowpriv)
aws sts get-access-identity
You'll see credentials and token owned by service user linked to the EC2 machine
It's the same with google cloud and azure
GIUDA betrayed again, how to get a new and fresh TGT (or a TGS - if you settle for little) on behalf of another logged user on a Windows machine.
How it works:
https://t.co/ldNo7PCd5C
#redteam#giuda#kerberos
thx to MzHmO@github
Have you tried compiling C++ sources with Embarcadero C++ compiler instead of using common compilers?
OpenProcessToken
DuplicateTokenEx
CreateProcessWithTokenW
virustotal analysis:
the first compiled with Visualstudio and the second with Borland C++
#redteam
@bettersafetynet One tenant, you can add your victims and manage them with runbooks.
Also standalone victims (not AD joined and not azure vm), like your home PC.
@bettersafetynet hahaha, I'm saying something else: if you put the victim's machine in YOUR azure tenant via ARC, you can stay forever without getting caught.