Solution Architect @iCubed - I.T. Consultant, Speaker, Trainer, Red-Teamer,PenTester and Security Consultant, former Army Paratrooper. Opinions are my own
#PingCastle 3.0 released !!!
https://t.co/wAQMeSPOvz
Active Directory & AzureAD security health check in seconds
>200k AD audited, management readable, no install, no admin, no data sent "to a cloud"
Example of report: https://t.co/jfXlLLS7Ln
github: https://t.co/PEB73KZtoq
Today we're publishing new techniques for recovering NTLM hashes from encrypted credentials protected by Windows Defender Credential Guard.
These techniques also work on victims logged on before the server was compromised.
https://t.co/euNIyX2dwW
Another #ShellcodePack video by @MC_Info_Sec! Stealthy XLL generation running a Sliver implant. With AV running in background of course :)
https://t.co/ZNlmnzPWB2
MS Defender for Endpoint detects Primary Refresh Token (PRT) extraction based on ProcessCreate event with BrowserCore.exe
Guess what?
Copy BrowserCore.exe to %TEMP%\random.exe - no more detections ¯\_(ツ)_/¯
Got it implemented in my sponsorware SharpPRT for anyone intersted :)
Reproduced the MS-MSDT Office RCE (on up-to-date Win10 and up-to-date Office 2019). Had some troubles with building the appropriate docx with external HTML reference, so quickly made some notes how to do it, step-by-step: https://t.co/zutxokWF4W
Have multiple engagements, past and present? Wanting more flexibility in your download locations?
You asked, I listened. Now you can specify synchronization between Cobalt Strike download locations on a per TeamServer basis.
More tools coming shortly.
https://t.co/QSE1N3h1Mg
Today is #BOFFriday! Time for some new candy:
> New BOF for CVE-2022-26923
> New BOF KerbHash (hash passwds to kerberos keys)
> New BOF version of PetitPotam attack
> Domaininfo updated with Azure support
Check out the @OutflankNL C2-Tool-Collection repo: https://t.co/Wq1obZDfRU