Exploiting CVE-2023-23397: Microsoft Outlook Elevation of Privilege Vulnerability
https://www.reddit.com/r/redteamsec/comments/11rfc4e/exploiting_cve202323397_microsoft_outlook/
submitted by /u/dmchell (https://www.reddit.com/user/dmchell)
[link] (https://www.mdsec.co.uk/2023/03/exploiting-cve-2023-23397-microsoft-outlook-elevation-of-privilege-vulnerability/) [comments] (https://www.reddit.com/r/redteamsec/comments/11rfc4e/exploiting_cve202323397_microsoft_outlook/)
https://www.reddit.com/r/redteamsec/comments/11rfc4e/exploiting_cve202323397_microsoft_outlook/
submitted by /u/dmchell (https://www.reddit.com/user/dmchell)
[link] (https://www.mdsec.co.uk/2023/03/exploiting-cve-2023-23397-microsoft-outlook-elevation-of-privilege-vulnerability/) [comments] (https://www.reddit.com/r/redteamsec/comments/11rfc4e/exploiting_cve202323397_microsoft_outlook/)
Goblob: A fast enumeration tool for publicly exposed Azure Storage blobs
https://www.reddit.com/r/redteamsec/comments/11rhhz7/goblob_a_fast_enumeration_tool_for_publicly/
submitted by /u/Macmod- (https://www.reddit.com/user/Macmod-)
[link] (https://github.com/Macmod/goblob) [comments] (https://www.reddit.com/r/redteamsec/comments/11rhhz7/goblob_a_fast_enumeration_tool_for_publicly/)
https://www.reddit.com/r/redteamsec/comments/11rhhz7/goblob_a_fast_enumeration_tool_for_publicly/
submitted by /u/Macmod- (https://www.reddit.com/user/Macmod-)
[link] (https://github.com/Macmod/goblob) [comments] (https://www.reddit.com/r/redteamsec/comments/11rhhz7/goblob_a_fast_enumeration_tool_for_publicly/)
How do I test the CovertVPN connection in cobalt strike?
https://www.reddit.com/r/redteamsec/comments/11rmdv6/how_do_i_test_the_covertvpn_connection_in_cobalt/
<!-- SC_OFF -->I have created a VPN interface in my current session and believe that I can successfully connect to the network it is tunnling to, however I don't know how to test if it can see what's on the other network since I don't know what is on the other network and I also can't seem to find ways to test it since much of the info online is old and outdated (or the interface has changed so drastically over the years that they no longer apply). I am wanting a simple way to test if the VPN client it working besides seeing traffic leaving and arriving in the console, that's not convincing enough. <!-- SC_ON --> submitted by /u/baronobeefdip2 (https://www.reddit.com/user/baronobeefdip2)
[link] (https://www.reddit.com/r/redteamsec/comments/11rmdv6/how_do_i_test_the_covertvpn_connection_in_cobalt/) [comments] (https://www.reddit.com/r/redteamsec/comments/11rmdv6/how_do_i_test_the_covertvpn_connection_in_cobalt/)
https://www.reddit.com/r/redteamsec/comments/11rmdv6/how_do_i_test_the_covertvpn_connection_in_cobalt/
<!-- SC_OFF -->I have created a VPN interface in my current session and believe that I can successfully connect to the network it is tunnling to, however I don't know how to test if it can see what's on the other network since I don't know what is on the other network and I also can't seem to find ways to test it since much of the info online is old and outdated (or the interface has changed so drastically over the years that they no longer apply). I am wanting a simple way to test if the VPN client it working besides seeing traffic leaving and arriving in the console, that's not convincing enough. <!-- SC_ON --> submitted by /u/baronobeefdip2 (https://www.reddit.com/user/baronobeefdip2)
[link] (https://www.reddit.com/r/redteamsec/comments/11rmdv6/how_do_i_test_the_covertvpn_connection_in_cobalt/) [comments] (https://www.reddit.com/r/redteamsec/comments/11rmdv6/how_do_i_test_the_covertvpn_connection_in_cobalt/)
How do I fetch the Beacon IDs in cobalt strike?
https://www.reddit.com/r/redteamsec/comments/11rmh6k/how_do_i_fetch_the_beacon_ids_in_cobalt_strike/
<!-- SC_OFF -->I need this to be doable through the console of cobalt strike or through an aggressor script. Much of what I am finding on the matter is outdated and I don't know a lot about some of the internal methods of the scripting environment. I need a way to programmatically identify the Beacon IDs that are currently residing on the teams server. For now I have just been going through the logs directory which is a bit time consuming and confusing at times when you deal with multiple beacons. <!-- SC_ON --> submitted by /u/baronobeefdip2 (https://www.reddit.com/user/baronobeefdip2)
[link] (https://www.reddit.com/r/redteamsec/comments/11rmh6k/how_do_i_fetch_the_beacon_ids_in_cobalt_strike/) [comments] (https://www.reddit.com/r/redteamsec/comments/11rmh6k/how_do_i_fetch_the_beacon_ids_in_cobalt_strike/)
https://www.reddit.com/r/redteamsec/comments/11rmh6k/how_do_i_fetch_the_beacon_ids_in_cobalt_strike/
<!-- SC_OFF -->I need this to be doable through the console of cobalt strike or through an aggressor script. Much of what I am finding on the matter is outdated and I don't know a lot about some of the internal methods of the scripting environment. I need a way to programmatically identify the Beacon IDs that are currently residing on the teams server. For now I have just been going through the logs directory which is a bit time consuming and confusing at times when you deal with multiple beacons. <!-- SC_ON --> submitted by /u/baronobeefdip2 (https://www.reddit.com/user/baronobeefdip2)
[link] (https://www.reddit.com/r/redteamsec/comments/11rmh6k/how_do_i_fetch_the_beacon_ids_in_cobalt_strike/) [comments] (https://www.reddit.com/r/redteamsec/comments/11rmh6k/how_do_i_fetch_the_beacon_ids_in_cobalt_strike/)
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Keeping Instagram Safe and Secure
https://cdn-images-1.medium.com/max/1280/1*Q6XhE5TeLtGm9nsGIUxncQ.jpeg
Instagram is a popular social media platform that has become a vital part of many people’s lives. As with any social media platform, there…
Continue reading on Medium »
Keeping Instagram Safe and Secure
https://cdn-images-1.medium.com/max/1280/1*Q6XhE5TeLtGm9nsGIUxncQ.jpeg
Instagram is a popular social media platform that has become a vital part of many people’s lives. As with any social media platform, there…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Kali Purple: The Game-Changing Defensive Security OS You Need to Know About
https://cdn-images-1.medium.com/max/1200/1*Eh-HalE9woDme6pTmtIKLA.jpeg
As the world becomes increasingly digital, the importance of cybersecurity cannot be overstated. Cyber threats are now a daily reality for…
Continue reading on Medium »
Kali Purple: The Game-Changing Defensive Security OS You Need to Know About
https://cdn-images-1.medium.com/max/1200/1*Eh-HalE9woDme6pTmtIKLA.jpeg
As the world becomes increasingly digital, the importance of cybersecurity cannot be overstated. Cyber threats are now a daily reality for…
Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Outdated Software Allows Hackers to Steal Sensitive Data from US Federal Agency
https://cdn-images-1.medium.com/max/1200/0*kdL_LL8UUpQzS0mE.jpg
A US Federal Agency fell victim to a cyber attack due to outdated software. The attackers exploited an old Telerik bug to gain access to…
Continue reading on Medium »
Outdated Software Allows Hackers to Steal Sensitive Data from US Federal Agency
https://cdn-images-1.medium.com/max/1200/0*kdL_LL8UUpQzS0mE.jpg
A US Federal Agency fell victim to a cyber attack due to outdated software. The attackers exploited an old Telerik bug to gain access to…
Continue reading on Medium »