Post #1020
66
Channel Public Channel
AL Alaid TechThread
@offensive_thread
Vulnerability discovery, threat intelligence, reverse engineering, AppSec
- Subscribers
- 1.14K
- Photos
- 7
- Videos
- 2
- Links
- 1.4K
Showing posts older than #1021 · Back to latest
Older Posts 20 shown
Post #1019
78
CVE-2020-17049: Kerberos Bronze Bit Attack - Overview
http://blog.netspi.com/cve-2020-17049-kerberos-bronze-bit-overview/
http://blog.netspi.com/cve-2020-17049-kerberos-bronze-bit-overview/
Post #1018
68
4 Free easy wins that make Red Teams harder
https://www.trustedsec.com/blog/4-free-easy-wins-that-make-red-teams-harder/
https://www.trustedsec.com/blog/4-free-easy-wins-that-make-red-teams-harder/
Post #1017
58
Post #1016
45
holehe allows you to check if the mail is used on different sites like twitter, instagram and will retrieve information on sites with the forgotten password function.
https://github.com/megadose/holehe
https://github.com/megadose/holehe
Post #1015
47
"Important, Spoofing" - zero-click, wormable, cross-platform remote code execution in Microsoft Teams
https://github.com/oskarsve/ms-teams-rce/blob/main/README.md
https://github.com/oskarsve/ms-teams-rce/blob/main/README.md
Post #1014
60
Post #1013
55
Announcing the Atheris Python Fuzzer
https://opensource.googleblog.com/2020/12/announcing-atheris-python-fuzzer.html
Google Open Source Blog Announcing the Atheris Python Fuzzer Google has found thousands of security vulnerabilities and other bugs using Fuzzing. Now we are introducing the Atheris fuzzing engine. https://opensource.googleblog.com/2020/12/announcing-atheris-python-fuzzer.html
Post #1012
52
Forwarded from r0 Crew (Channel)
PTM - Page Table Manipulation From Usermode https://back.engineering/01/12/2020/ #exploitation #windows
Post #1011
47
Forwarded from r0 Crew (Channel)
Big Match: matching open source code in binaries for fun and profit https://rev.ng/blog/big-match/post.html #reverse #dukeBarman
Post #1010
53
How to run Windows 10 on ARM in Qemu with Hypervisor.framework patches on Apple Silicon Mac
https://gist.github.com/niw/e4313b9c14e968764a52375da41b4278#file-readme-md
https://gist.github.com/niw/e4313b9c14e968764a52375da41b4278#file-readme-md
Post #1009
59
Lateral movement via MSSQL: a tale of CLR and socket reuse
https://www.blackarrow.net/mssqlproxy-pivoting-clr/
Tarlogic Security Lateral movement via MSSQL: a tale of CLR and socket reuse Technical details about how to pivot through a Microsoft SQL Server . Using mssql as a proxy for lateral movement https://www.blackarrow.net/mssqlproxy-pivoting-clr/
Post #1007
56
Cross-site Scripting via WHOIS and DNS Records
https://medium.com/tenable-techblog/cross-site-scripting-via-whois-and-dns-records-a25c33667fff
https://medium.com/tenable-techblog/cross-site-scripting-via-whois-and-dns-records-a25c33667fff
Post #1006
54
ImageMagick - Shell injection via PDF password
https://insert-script.blogspot.com/2020/11/imagemagick-shell-injection-via-pdf.html
Blogspot ImageMagick - Shell injection via PDF password "Use ImageMagick® to create, edit, compose, or convert bitmap images. It can read and write images in a variety of formats (over 200) includ... https://insert-script.blogspot.com/2020/11/imagemagick-shell-injection-via-pdf.html
Post #1005
45
Using Nim language for offensive operations
https://github.com/byt3bl33d3r/OffensiveNim
https://secbytes.net/Implant-Roulette-Part-1:-Nimplant
https://github.com/byt3bl33d3r/OffensiveNim
https://secbytes.net/Implant-Roulette-Part-1:-Nimplant
Post #1004
41
HyperDbg debugger is an open-source, hypervisor-assisted user-mode, and kernel-mode Windows debugger with a focus on using modern hardware technologies. It is a debugger designed for analyzing, fuzzing and reversing.
https://github.com/HyperDbg/HyperDbg
https://github.com/HyperDbg/HyperDbg
Post #1003
40
A modular Jupyter notebook to automate / parse your recon to excel including:
- Subdomain Enumeration
- Cloud Enumeration
- GitHub Enumeration
- Shodan and Probing
- + more
https://github.com/obheda12/JupyterPen
- Subdomain Enumeration
- Cloud Enumeration
- GitHub Enumeration
- Shodan and Probing
- + more
https://github.com/obheda12/JupyterPen
Post #1002
55
BloodHound 4.0: Azure extension
https://www.youtube.com/watch?v=gAConW5P5uU
https://posts.specterops.io/introducing-bloodhound-4-0-the-azure-update-9b2b26c5e350
YouTube Six Degrees of Global Admin – Andy Robbins & Rohan Vazarkar (SO-CON 2020) In 2016 we released BloodHound, which helps attackers and defenders alike identify and execute or eliminate attack paths in Active Directory. Since then, BloodHound's collection and analysis capabilities have been limited to Active Directory and domain-joined… https://www.youtube.com/watch?v=gAConW5P5uU
https://posts.specterops.io/introducing-bloodhound-4-0-the-azure-update-9b2b26c5e350
Post #1001
43
Post #1000
49
Hypervisor Vulnerability Research: State of the Art (with a deep focus on Hyper-V & ESXi)
https://alisa.sh/slides/HypervisorVulnerabilityResearch2020.pdf
https://alisa.sh/slides/HypervisorVulnerabilityResearch2020.pdf