[New Blog] Research into ClickOnce Deployment Manifests, an underused option for initial payload delivery that allows for:
-NTLMv2 hash disclosure over HTTP(s) on hyperlink click to internet-zoned sites
-One-click execution of arbitrary .Net assemblies
https://t.co/S6NAiAew61
Stuck at home? Feel disconnected? Feel free to join our infosec community Slack workspace, ask/answer questions, or just hang out - https://t.co/m8vhLagAIw #helpthecommunity#infosec#safeplatform
1 hour till @gh0s7 and I drop some #TTPs @BsidesG .... Don't miss this meme filled extravaganza .... "Cradle 2 the Grave, Full Blast Radius Cyber Kill Chain" lol 😂. Can't thank @JohnMazza and @nisos for kicking off @BsidesG first event right!
#felixsbreakout is on the big screen! We r in the middle room between the 2 speaker tracks! Come out to @BsidesG , walk in tickets available!!! #lockpickvillage
If you are at @BsidesG already, come down and have a beer, if not you better not miss it tomorrow because this schedule is stacked!!! @gh0s7 and I will be rep'n @nisos so come grab a limited sticker and chat about the things not discussed on Twitter 😉..
For those of you looking for another incredibly talented @nisos operator to follow @hick_cyber is coming out of the shadows of #SpookLife ... Let's welcome him to the public #infosec community.