A windows machine that has Cisco passwords hashes that we crack, spray on an smb share to validate user/pass combos and get user access . We then dump data from a running process and get root. Itβs a fun machine
π£lmakonem
π@malwr
π£lmakonem
π@malwr
YouTube
HackTheBox - Heist | Noob To OSCP Episode #26
We will complete Heist, a Windows ctf machine from hackthebox for learning offensive cyber security skills. You will learn: 1) Enumerating windows 3) How to ...
TFW you-get-really-excited-you-patch-diffed-a-0day-used-in-the-wild-but-then-find-out-it-is-the-wrong-vuln
π£cyberg0100
π@malwr
π£cyberg0100
π@malwr
projectzero.google
TFW you-get-really-excited-you-patch-diffed-a-0day-used-in-the-wild-but-then-find-out-it-is-the-wrong-vuln
Posted by Maddie Stone, Project ZeroINTRODUCTIONIβm really interested in 0-days exploited i...
Research: Vulnerability analysis using the security news graph. Alternate way to score severity.
π£isox_xx
Sounds similar to the VPR scoring method used by Tenable (Nessus).
π€Tryptic0nUK
π@malwr
π£isox_xx
Sounds similar to the VPR scoring method used by Tenable (Nessus).
π€Tryptic0nUK
π@malwr
Vulners Blog
Hidden Threat β Vulnerability Analysis using the news graph
When you face to face a new vulnerability, what is the thought that comes first? Of course, respond as quickly as possible. However, speed is just one of the conditions for an effective fight againβ¦
Common Ports to Remember (credits: packetlife.net)
π£ATTACKERSA
This very same printout follows me from desk-to-desk. Very good reference point to the not-so-easy-to-remember ports.
π€native_rooted
All u need to know is 20,22,21,25,389,3389,80,53
π€Calvimn
What about WhatsApp?
π€wthinastix
π@malwr
π£ATTACKERSA
This very same printout follows me from desk-to-desk. Very good reference point to the not-so-easy-to-remember ports.
π€native_rooted
All u need to know is 20,22,21,25,389,3389,80,53
π€Calvimn
What about WhatsApp?
π€wthinastix
π@malwr
Starting Fires by Hacking 3D Printers, pt 1
π£FlyingTriangle
And this is why I bought a printer without wifi. Nothing is perfect, but it's one less attack vector.
π€digitaldude87
Iβm not surprised that they companies donβt institute security from the very beginning.
π€macgeek89
π€ihave10felonies
π@malwr
π£FlyingTriangle
And this is why I bought a printer without wifi. Nothing is perfect, but it's one less attack vector.
π€digitaldude87
Iβm not surprised that they companies donβt institute security from the very beginning.
π€macgeek89
lp0 on fire all over again...π€ihave10felonies
π@malwr
Coalfire
Coalfire Blog
Resource covering the most important issues in IT security and compliance as well as insights on IT GRC issues that impact the industries that we serve.
Firefox 74.0.1 has been released
π£danielsuarez369
Seems to be a security update for the most part: https://www.mozilla.org/en-US/security/advisories/mfsa2020-11/
π€danielsuarez369
π@malwr
π£danielsuarez369
Seems to be a security update for the most part: https://www.mozilla.org/en-US/security/advisories/mfsa2020-11/
π€danielsuarez369
π@malwr
Mozilla
Firefox 74.0.1, See All New Features, Updates and Fixes
[PDF Bug Bounties With Bash | @TomNomNom](https://tomnomnom.com/talks/bug-bounties-with-bash-virsec.pdf)
π£_vavkamil_
π@malwr
π£_vavkamil_
π@malwr
NTLM Relay - an estimated 47 minute read (in-depth) which explains NTLM relaying in depth
π£digicat
π@malwr
π£digicat
π@malwr
hackndo
NTLM Relay
NTLM relay is a technique of standing between a client and a server to perform actions on the server while impersonating the client. Protections such as SMB signing or MIC allow to limit the actions of an attacker. This article goes into detail about thisβ¦