This is a first for me. I found a tool via an intrusion that gets by several EDRs I tested. The project is Amnesiac github.com/Leo4j/Amnesiac. Here is a video about it. I show how it gets by Defender like a knife through butter. youtu.be/FhJpfWZ6NQA Thanks to @L3o4j for this!
I've updated Invoke-SMBRemoting to also be able to modify a service binPath on the target system instead of relying only on creating a new one.
Invoke-SMBRemoting is a tool that will get you a System Interactive Shell over Named-Pipes (SMB).
github.com/Leo4j/Invoke-S…#Hacking
Had fun working on a PoC to execute commands in other users' sessions.
This could be automated into a chain of actions potentially leading to full domain compromise.
Scroll down to "Thoughts" in the repo :)
github.com/Leo4j/SessionE…#Pentesting#ActiveDirectory#CyberSecurity
60 Followers 1K Following🇯🇵 / Pentester / Red Teamer / Offensive Security Hobbyist / Love to make fun stuff even if it's not worth / Simplicity matters, and it always conquers.
37 Followers 543 Followingwanna be red teamer && threat hunter && && reverse engineer | CTF player | cybersecurity enthousiast | top 1% THM | Autodidact (I just finished high school :))
52 Followers 170 FollowingSbnrnya org-org yg beriman itu adlh bersaudara, maka damaikanlah di antara 2 saudara kamu; & bertaqwalah kpd Allah spya kamu beroleh rahmat. [Al-Hujuraat 49:10]
33 Followers 694 FollowingUl1xes/1mp - Cyber enthusiast.
Background is one of my favorites Glenn's Brown artworks (The Shallow End). Not mine for copyright. Hope not get sued. Check him!
856 Followers 111 FollowingWelcome to the official Twitter for CICADA8! Your premier destination for cutting-edge research and development in the cybersecurity field
3K Followers 2K FollowingPowerShell MVP that is passionate about helping others succeed with Active Directory, Entra ID, Defender XDR, and Microsoft 365. Always learning! ✝️👨👩👧👦☕
110 Followers 0 FollowingPraSec (Prague Security) is an IT security (hacking if you prefer) event which brings together similarly minded people from our beloved industry.
7K Followers 77 FollowingProfessional redteamer and malware development enthusiast ! I will share some tips and experiences. Look at my work here : https://t.co/cxLBvW7pcI
13K Followers 508 FollowingI don't know how to search on Google so I do research on my own and tweet about it. Hacking as a life style
https://t.co/a05mevChzu
856 Followers 111 FollowingWelcome to the official Twitter for CICADA8! Your premier destination for cutting-edge research and development in the cybersecurity field
49K Followers 339 FollowingSecurity researcher in Google Project Zero. Author of Attacking Network Protocols. Tweets are my own etc. Mastodon: @[email protected]
655 Followers 549 FollowingPrincipal Consultant. The guy your sysadmin told you not to worry about. Burn like hot coffee. Kinda sweet like toffee. Look what this red team done taught me..
4K Followers 689 FollowingAll I know is that I know nothing. I like Windows, Active Directory and IoT/Hardware hacking.
"Responsable mais pas coupable" de PetitPotam
3K Followers 2K Following● Senior Red Team Cybersecurity Expert ● Ex-CTO @ Cyberguard
● SysAdmin +10 years ● Creator of AutoRDPwn: The Shadow Attack Framework
5K Followers 136 FollowingWe are the experts in Active Directory, Entra ID, and Identity security. Find out more about our services at https://t.co/3kWA6f7dh1.
12K Followers 58 FollowingAuthor of #PingCastle, contributor to #mimikatz (DCSync, setntlm, DCShadow) and #OpenSC. Wrote GIDS applet, OpenPGP card driver on Windows and OpenSC stuff.
26K Followers 2 FollowingOffensiveCon Berlin is a technical international security conference focused on offensive security only. Organised by @Binary_Gecko. Stay tuned #OffensiveCon26.
20K Followers 439 FollowingHacker, Infosec Researcher, Military Affairs & History, PowerShell, AD and Azure pwner, Creator of Nishang and others :)
Founder @alteredsecurity