Red Teamer | Dungeon Master | USAF Veteran - love all things D&D, Coding and Hacking - stay home Barista ☕ - @mandiant/@googlecloud && opinions my own.
Here are a few recent (and fantastic) additions to the Ultimate WDAC Bypass List:
☑️ "Intune Windows Agent bypass explanation" by @TheWMIGuy
☑️" Harden Windows Security: WDAC Notes" by @CyberCakeX
https://t.co/2AhEtQ2aS0
Curious about how to get into Social Engineering? Here's a practical guide with an example to draw ideas and inspiration from.
Includes methods such as creating urgency, authority transfer, and building rapport: https://t.co/Wkx5zxQAK9
💥BOOM!💥 Another privilege escalation blog, this time showcasing how to convert arbitrary file deletions 🗑️ to SYSTEM command prompt🌈 CVE-2023-27470. Learn about TOCTOU, pseudo-symlinks, MSI rollback exploits, and, of course, how to protect yourselves!
https://t.co/S3HCXdvoBY
Got my first Microsoft CVE 🔥
CVE-2023-36004: Windows DPAPI (Data Protection Application Programming Interface) Spoofing Vulnerability
https://t.co/nWuuldqKnp
Dear @defcon friends,
Just because @jaysonstreet and I have been fighting each other in dinosaur suits for years doesn’t mean you can’t fight us too. Order your suit. Steel your nerves. Prepare for battle.
Keep…@defcon…weird!
-@Grifter801 & @jaysonstreet#defcon
You can use the Windows Search Protocol to coerce authentication from hosts running the Windows Search Service (Win10/11 only by default) as a regular domain user. Haven't been able to do WebDAV with it though so usefulness is limited. PoC: https://t.co/qKeUfdaKB8
Were you aware standard VSCode can be turned into a fully-functioning RAT with a single command?
✅Popular/MS-signed exe
✅Uses MS network infra
✅VSCode is always noisy, abuse may not stand out
🔥Open/edit/delete files, run arbitrary commands
Solid find: https://t.co/PwV06xYA1W
Been playing with the .zip TLD for phishing, apparently Outlook on Windows doesn't let you click links containing credentials, mitigating the "attack". haven't seen anyone talk about this, weirdly. after looking into this a bit, I found a way to bypass this behaviour!
My story of failure and complacency isn't new or unique, but I hope it resonates and inspires others embarking on their own.
Remember, you don't always need a cert to succeed - it's about continual learning and self-challenge. For me, it was the OSCP.
https://t.co/zbVq7SQR6t
A lot of you asked for an audio option for our daily emails, so we did it because fitness is for everyone.
Spotify: https://t.co/u4bMwBMuP3
Apple: https://t.co/SmPF4ZeS51