@mrexodia I tried this approach but ran into some compilation issues with MingW. I should revisit it, as it's much simpler to follow and would fit well in the blog. I used the stubs to automate the build process effectively.
Dear @github@Microsoft and @MsftSecIntel .
Thank you for your service. I have lost all hopes from you guys. As a Windows security researcher whose intent was to help the beginners and contribute to open source security tooling, and i had so much respect towards @Microsoft , that thought was changed today and i am leaving.
I have left the enough evidence in the ticket session. I would be better if a security researcher from GitHub might actually take a look at these.
Thank you and bye to the community.....
Here after you will not see posts about GitHub issues.
Ticket ID: #4440743
#github #msft #defense #unlawful
Published a new blog on Applocker & WDAC evasion techniques.
This article covers practical application control bypass concepts, modern tradeoffs, and realistic execution paths in hardened environments.
Read here:
https://t.co/ns7A4LYkNM
North Korean Lazarus Group has weaponized this exact class of Microsoft-signed kernel driver.
It is sitting on MILLIONS of Windows PCs right now.
It gives any local process full control from the deepest level of Windows.
5 lines of code. Zero validation.
Your antivirus can’t stop what runs below the OS.
I was looking a bit onto why OPENROWSET is able to read privileged files (like the root flag on Signed @hackthebox_eu) when using Silver tickets on MSSQL. Turns out you can get SYSTEM access without potatoes by recovering the full token. https://t.co/cd47HQLXF0
A quick writeup on potential security issue of Windows LNK that I reported to MSRC last month. They decided to not fix due to relying on MOTW. In the blog I included the proof of concept. All you have to do is to Right-Click and get Info Disclosure :)
https://t.co/j2N7AQlO7Z
I just pwned Axlle in Hack The Box!
Phish -> initial shell.
Trick a program -> exec shell for priv esc.
AD Perms -> escalate further.
Windows Kits ****Runner -> admin.
https://t.co/4snXVHQBxW #hackthebox#htb#cybersecurity