Printnightmare All Techniques and Mitre Att&ck Map by Joas
Active Directory: https://lnkd.in/eCvqMNR
Windows Server 2016: https://lnkd.in/ePpbNZc
PoC Printnightmare: https://lnkd.in/eQB4HAS
ACLs Fix Printnightmare: https://lnkd.in/e_kr5Sz
Windows 10 PoC 1: https://lnkd.in/ejxBm-Y
Windows 10 PoC 2: https://lnkd.in/eyBYXMH
Windows 10 PoC 3: https://lnkd.in/e44Kfub
Windows Server 2019: https://lnkd.in/e3wxgyB
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.13
Active Directory: https://lnkd.in/eCvqMNR
Windows Server 2016: https://lnkd.in/ePpbNZc
PoC Printnightmare: https://lnkd.in/eQB4HAS
ACLs Fix Printnightmare: https://lnkd.in/e_kr5Sz
Windows 10 PoC 1: https://lnkd.in/ejxBm-Y
Windows 10 PoC 2: https://lnkd.in/eyBYXMH
Windows 10 PoC 3: https://lnkd.in/e44Kfub
Windows Server 2019: https://lnkd.in/e3wxgyB
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.13
lnkd.in
LinkedIn
This link will take you to a page that’s not on LinkedIn
هرشب
بعد از خارج شدن از محل كار
زیر شانههای وطنم را میگیرم
دستش را تکیه میدهم
به کمرگاه صخرهای در کوهستان
همين حوالي
و باهم
نقشهء فرار میکشیم
-!ندارد-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
بعد از خارج شدن از محل كار
زیر شانههای وطنم را میگیرم
دستش را تکیه میدهم
به کمرگاه صخرهای در کوهستان
همين حوالي
و باهم
نقشهء فرار میکشیم
-!ندارد-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
TCP_IP_for_beginners.pdf
11.7 MB
Tech book
"TCP/IP Protocol, for beginners:
The Ultimate Beginner's Guide to Learn TCP/IP protocol Step by Step", 2021.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
"TCP/IP Protocol, for beginners:
The Ultimate Beginner's Guide to Learn TCP/IP protocol Step by Step", 2021.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
MTK6765 Bootrom protection and unlocked password protection
https://github.com/MTK-bypass/bypass_utility
Aggressive compile-time optimizations for JavaScript via dynamic symbolic VM execution
https://github.com/undefinedbuddy/optimizr
Threat Research👍🏽
Kaseya supply‑chain attack
https://www.welivesecurity.com/2021/07/03/kaseya-supply-chain-attack-what-we-know-so-far
Red Team Tactics
1. Inconsistent Behavior of Go's CGI and FastCGI Transport May Lead to XSS...
https://www.redteam-pentesting.de/de/advisories/rt-sa-2020-004/-inconsistent-behavior-of-gos-cgi-and-fastcgi-transport-may-lead-to-cross-site-scripting
2. IDOR (Insecure Direct Object References)
https://medium.com/@aysebilgegunduz/everything-you-need-to-know-about-idor-insecure-direct-object-references-375f83e03a87
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
https://github.com/MTK-bypass/bypass_utility
Aggressive compile-time optimizations for JavaScript via dynamic symbolic VM execution
https://github.com/undefinedbuddy/optimizr
Threat Research👍🏽
Kaseya supply‑chain attack
https://www.welivesecurity.com/2021/07/03/kaseya-supply-chain-attack-what-we-know-so-far
Red Team Tactics
1. Inconsistent Behavior of Go's CGI and FastCGI Transport May Lead to XSS...
https://www.redteam-pentesting.de/de/advisories/rt-sa-2020-004/-inconsistent-behavior-of-gos-cgi-and-fastcgi-transport-may-lead-to-cross-site-scripting
2. IDOR (Insecure Direct Object References)
https://medium.com/@aysebilgegunduz/everything-you-need-to-know-about-idor-insecure-direct-object-references-375f83e03a87
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
GitHub
GitHub - MTK-bypass/bypass_utility
Contribute to MTK-bypass/bypass_utility development by creating an account on GitHub.
آينده از آن، هوش مصنوعي و يادگيري ماشين هست، با توجه به حملات عجيب و غريب و زير و دي و منفي دي😜شما براي اين ترند چه طرح هاي در آتي در دستور كار داريد.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
در سازمان شما به ازاي هر سرويس low level design وجود خارجي دارد!؟از اهميت اين مستندات مطلع هستيد!؟
اين نوع سند ميبايست شامل ojt
و محتواي آموزش حين كار +محتواي مرتبط با طراحي، پياده سازي، راهبري، خطا يابي آن سرويس باشد.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
اين نوع سند ميبايست شامل ojt
و محتواي آموزش حين كار +محتواي مرتبط با طراحي، پياده سازي، راهبري، خطا يابي آن سرويس باشد.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
پيش نياز هاي تخصصي حوزه مد نظر خود را به درستي انتخاب كنيد، تا مسير موفقيت هموارتر و اثر بخش باشد.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
REvil gang exploited a zero-day vulnerability affecting VSA software in the recent massive supply-chain ransomware attack that triggered a chain of infection that compromised thousands of businesses.
Read: https://thehackernews.com/2021/07/revil-used-0-day-in-kaseya-ransomware.html
The hackers are now asking for $70 million to unlock all affected systems with a universal decryption programme.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
Read: https://thehackernews.com/2021/07/revil-used-0-day-in-kaseya-ransomware.html
The hackers are now asking for $70 million to unlock all affected systems with a universal decryption programme.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
Cloud Security
How to monitor and track failed logins for your AWS Managed Microsoft AD🤪
https://aws.amazon.com/ru/blogs/security/how-to-monitor-and-track-failed-logins-for-your-aws-managed-microsoft-ad
Offensive security
1. Understanding & Detecting C2 Frameworks - DarkFinger-C2👍🏽
https://nasbench.medium.com/understanding-detecting-c2-frameworks-darkfinger-c2-539c79282a1c
2. Heap-based AMSI bypass for MS Excel VBA and others
https://codewhitesec.blogspot.com/2019/07/heap-based-amsi-bypass-in-vba.html?m=1
exploit
CVE-2021-26892:
An Authorization Bypass on the Microsoft Windows EFI System Partition
https://www.zerodayinitiative.com/blog/2021/6/30/cve-2021-26892-an-authorization-bypass-on-the-microsoft-windows-efi-system-partition
Cloud Security
Cloudquery transforms cloud infrastructure into SQL database for easy monitoring, governance and security
https://github.com/cloudquery/cloudquery?rdt_cid=3165982334197510857
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
How to monitor and track failed logins for your AWS Managed Microsoft AD🤪
https://aws.amazon.com/ru/blogs/security/how-to-monitor-and-track-failed-logins-for-your-aws-managed-microsoft-ad
Offensive security
1. Understanding & Detecting C2 Frameworks - DarkFinger-C2👍🏽
https://nasbench.medium.com/understanding-detecting-c2-frameworks-darkfinger-c2-539c79282a1c
2. Heap-based AMSI bypass for MS Excel VBA and others
https://codewhitesec.blogspot.com/2019/07/heap-based-amsi-bypass-in-vba.html?m=1
exploit
CVE-2021-26892:
An Authorization Bypass on the Microsoft Windows EFI System Partition
https://www.zerodayinitiative.com/blog/2021/6/30/cve-2021-26892-an-authorization-bypass-on-the-microsoft-windows-efi-system-partition
Cloud Security
Cloudquery transforms cloud infrastructure into SQL database for easy monitoring, governance and security
https://github.com/cloudquery/cloudquery?rdt_cid=3165982334197510857
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
Amazon
How to monitor and track failed logins for your AWS Managed Microsoft AD | Amazon Web Services
AWS Directory Service for Microsoft Active Directory provides customers with the ability to review security logs on their AWS Managed Microsoft AD domain controllers by either using a domain management Amazon Elastic Compute Cloud (Amazon EC2) instance or…
Threat Hunting using DNS logs – Soc Incident Response Procedure
Read Here:
https://www-socinvestigation-com.cdn.ampproject.org/c/s/www.socinvestigation.com/threat-hunting-using-dns-logs-soc-incident-response-procedure/amp/
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
Read Here:
https://www-socinvestigation-com.cdn.ampproject.org/c/s/www.socinvestigation.com/threat-hunting-using-dns-logs-soc-incident-response-procedure/amp/
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
Application development teams need to ensure no sensitive material like encryption keys or credentials are stored in definition files, on systems that are exposed or in code that could be exposed.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
بخشی از خاطرات محمود ضرابی، خلبان جنگ هشتساله
«داریوش عبدالعظیمی یکی از خلبانان جنگنده F-4 و از بچههای خالص و مخلص بود که در یکی از پروازها دچار حادثه میشود و بسیاری از نقاط بدنش میشکند و در بیمارستان نیروی هوایی بستری میشود. من نیز به حکم وظیفه برای احوالپرسی رفتم، دیدم که بدنش از گردن تا پا داخل گچ است و اتاق هم پر است از دوستانی که همگی اظهار لطف داشتند. وقتی اتاق خالی شد به من گفت: «میتوانم چیزی بپرسم؟»
او در آن موقع سروان بود و من سرگرد بودم و مانند یاسینی و دوران خیلی به من اظهار لطف میکرد؛ در واقع انسانهای مؤدبی بودند. گفت:
«من هر موقع وارد خاک عراق میشوم، متوجه میشوم.»
پرسیدم: «چهجوری؟»
گفت: «بلافاصله دهنم تلخ میشود. این موضوع را از سعید فریدونی پرسیدم، او هم همینطور است.»
گفتم: «داریوش من هم همینطور هستم.»
بعدها از یک پزشک این موضوع را پرسیدم، او گفت که این مسئله کاملا طبیعی است و وقتی آدرنالین خون شما بالا میرود، یک سری فعل و انفعالات در بدن رخ میدهد که در واقع میخواهد به شما هشدار بدهد که در منطقه غریبه هستید.»
:) داشتم برای کناردستیم این رو تعریف میکردم و بهش میگفتم یه وقتهایی هست هرجور خودت رو جمع میکنی که نترسی، بههم نریزی، واهمه نداشته باشی، بازم دهنت تلخه.
بازم فیزیولوژی این حقیقت رو به روت میاره که:
«این موقعیت واقعاً ترسناکه، واقعاً خطر داره، حق نداری نترسی!»
-🤲🏻-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
«داریوش عبدالعظیمی یکی از خلبانان جنگنده F-4 و از بچههای خالص و مخلص بود که در یکی از پروازها دچار حادثه میشود و بسیاری از نقاط بدنش میشکند و در بیمارستان نیروی هوایی بستری میشود. من نیز به حکم وظیفه برای احوالپرسی رفتم، دیدم که بدنش از گردن تا پا داخل گچ است و اتاق هم پر است از دوستانی که همگی اظهار لطف داشتند. وقتی اتاق خالی شد به من گفت: «میتوانم چیزی بپرسم؟»
او در آن موقع سروان بود و من سرگرد بودم و مانند یاسینی و دوران خیلی به من اظهار لطف میکرد؛ در واقع انسانهای مؤدبی بودند. گفت:
«من هر موقع وارد خاک عراق میشوم، متوجه میشوم.»
پرسیدم: «چهجوری؟»
گفت: «بلافاصله دهنم تلخ میشود. این موضوع را از سعید فریدونی پرسیدم، او هم همینطور است.»
گفتم: «داریوش من هم همینطور هستم.»
بعدها از یک پزشک این موضوع را پرسیدم، او گفت که این مسئله کاملا طبیعی است و وقتی آدرنالین خون شما بالا میرود، یک سری فعل و انفعالات در بدن رخ میدهد که در واقع میخواهد به شما هشدار بدهد که در منطقه غریبه هستید.»
:) داشتم برای کناردستیم این رو تعریف میکردم و بهش میگفتم یه وقتهایی هست هرجور خودت رو جمع میکنی که نترسی، بههم نریزی، واهمه نداشته باشی، بازم دهنت تلخه.
بازم فیزیولوژی این حقیقت رو به روت میاره که:
«این موقعیت واقعاً ترسناکه، واقعاً خطر داره، حق نداری نترسی!»
-🤲🏻-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
Udemy Reverse Engineering, Debugging and Malware Analysis - 2021
ثبت نام رايگان تا ١٦ ساعت
Free Enroll Link - https://ssup.co/udemy/com/f7xZ
The analysis provides information about how the malware was able to compromise the system. With this information, network administrators are able to impose policies to mitigate the attack. If the malware was able to enter the system because of a user opening an email attachment that contains JavaScript code, the network administrator would implement the blocking of emails that contain a JavaScript attachment.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
ثبت نام رايگان تا ١٦ ساعت
Free Enroll Link - https://ssup.co/udemy/com/f7xZ
The analysis provides information about how the malware was able to compromise the system. With this information, network administrators are able to impose policies to mitigate the attack. If the malware was able to enter the system because of a user opening an email attachment that contains JavaScript code, the network administrator would implement the blocking of emails that contain a JavaScript attachment.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
Udemy Digital Forensics - Complete Digital Forensics Masterclass
ثبت نام محدود و رايگان
Free Enroll Link - https://ssup.co/udemy/com/Pizf
Digital Forensics is defined as the process of preservation, identification, extraction, and documentation of computer evidence which can be used by the court of law. It is a science of finding evidence from digital media like a computer, mobile phone, server, or network. It provides the forensic team with the best techniques and tools to solve complicated digital-related cases. Digital Forensics helps the forensic team to analyzes, inspect, identifies, and preserve the digital evidence residing on various types of electronic devices.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
ثبت نام محدود و رايگان
Free Enroll Link - https://ssup.co/udemy/com/Pizf
Digital Forensics is defined as the process of preservation, identification, extraction, and documentation of computer evidence which can be used by the court of law. It is a science of finding evidence from digital media like a computer, mobile phone, server, or network. It provides the forensic team with the best techniques and tools to solve complicated digital-related cases. Digital Forensics helps the forensic team to analyzes, inspect, identifies, and preserve the digital evidence residing on various types of electronic devices.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.14
Udemy Practical Ethical Hacking for Beginners
رايگان و محدود👍🏽
Free Enroll Link - https://ssup.co/udemy/com/m9OY
This course is for anyone interested in becoming an ethical hacker, no matter your current skill level. The curriculum is designed for absolute beginners interested in a career as a security professional, beginning with the absolute basics of penetration testing, and progressing to advanced topics and techniques. Get started today in your Ethical Hacking career.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
رايگان و محدود👍🏽
Free Enroll Link - https://ssup.co/udemy/com/m9OY
This course is for anyone interested in becoming an ethical hacker, no matter your current skill level. The curriculum is designed for absolute beginners interested in a career as a security professional, beginning with the absolute basics of penetration testing, and progressing to advanced topics and techniques. Get started today in your Ethical Hacking career.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
Udemy Process And Threads in Linux
رايگان😁
Free Enroll Link - https://ssup.co/udemy/com/TYoO
This course covers the basics of Process management to the expert level of Process management.Each chapter has lots of programming Practice, tricks, and Interview question discussion.This Course is based on the practical approach with lots of Programming.Lots of hidden and rarely known concepts are explained which you can find very rarely in any online platform or book.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
رايگان😁
Free Enroll Link - https://ssup.co/udemy/com/TYoO
This course covers the basics of Process management to the expert level of Process management.Each chapter has lots of programming Practice, tricks, and Interview question discussion.This Course is based on the practical approach with lots of Programming.Lots of hidden and rarely known concepts are explained which you can find very rarely in any online platform or book.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
Udemy IT Networking Fundamentals with Lab Practicals
رايگان
Free Enroll Link - https://ssup.co/udemy/com/W6Nf
In this 5 Days course, I'll show you step-by-step, the fundamentals of computer networking, teaching you essential computer networking core principles you need to know.If you’re looking to advance or begin your career in Information Technology (IT), this course is a must!
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
رايگان
Free Enroll Link - https://ssup.co/udemy/com/W6Nf
In this 5 Days course, I'll show you step-by-step, the fundamentals of computer networking, teaching you essential computer networking core principles you need to know.If you’re looking to advance or begin your career in Information Technology (IT), this course is a must!
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
Udemy System Call in Linux
رايگان👍🏽
Free Enroll Link - https://ssup.co/udemy/com/iKrq
The Course is based on the practical approach The course is aimed to teach System Call for beginners, intermediates and even advanced system admins who wish to develop their skills in Linux. Starting all the way from the Linux basics up to how to manage an entire platform.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
رايگان👍🏽
Free Enroll Link - https://ssup.co/udemy/com/iKrq
The Course is based on the practical approach The course is aimed to teach System Call for beginners, intermediates and even advanced system admins who wish to develop their skills in Linux. Starting all the way from the Linux basics up to how to manage an entire platform.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
Udemy CCNA Interview Questions | Get a Job
Free Enroll Link - https://ssup.co/udemy/com/SPMv
Welcome to CCNA Interview Questions. Even after doing CCNA with local institutes its hard to crack network engineer Interviews.
————////////
Udemy DevSecOps : Jenkins CI / CD on AWS from Scratch
Free Enroll Link - https://ssup.co/udemy/com/zDVj
Jenkins is a powerful and flexible automation tool; It is used to automate almost anything.Go faster and learn how to build strong automated processes like Pipelines, CI/CD Workflows and more!Jenkins is the most popular tool to do Continuous Integration and Continuous Delivery of your software
————////////
Udemy IP Addressing and Subnetting - The Easy Way !
Free Enroll Link - https://ssup.co/udemy/com/T9wJ
This course is taught using real world examples and a Blackboard with Color Pens. This class will not use slides to teach, it is a very interactive class with actual examples and ways to implement them. You will actually see how to implement IP addresses and subnets.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
Free Enroll Link - https://ssup.co/udemy/com/SPMv
Welcome to CCNA Interview Questions. Even after doing CCNA with local institutes its hard to crack network engineer Interviews.
————////////
Udemy DevSecOps : Jenkins CI / CD on AWS from Scratch
Free Enroll Link - https://ssup.co/udemy/com/zDVj
Jenkins is a powerful and flexible automation tool; It is used to automate almost anything.Go faster and learn how to build strong automated processes like Pipelines, CI/CD Workflows and more!Jenkins is the most popular tool to do Continuous Integration and Continuous Delivery of your software
————////////
Udemy IP Addressing and Subnetting - The Easy Way !
Free Enroll Link - https://ssup.co/udemy/com/T9wJ
This course is taught using real world examples and a Blackboard with Color Pens. This class will not use slides to teach, it is a very interactive class with actual examples and ways to implement them. You will actually see how to implement IP addresses and subnets.
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
https://dfircheatsheet.github.io/
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
dfircheatsheet.github.io
DFIR Cheat Sheet
collection of tools, tips, and resources in an organized way to provide a one-stop place for DFIR folks." />
A framework for secure and scalable network traffic analysis
https://github.com/dreadl0ck/netcap
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
https://github.com/dreadl0ck/netcap
-آگاهي رساني امنيت سايبري-
Up2date 4 Defence Today,
Secure Tomorrow
@CisoasaService
1400.04.15
GitHub
GitHub - dreadl0ck/netcap: A framework for secure and scalable network traffic analysis - https://netcap.io
A framework for secure and scalable network traffic analysis - https://netcap.io - dreadl0ck/netcap