[PDF Bug Bounties With Bash | @TomNomNom](https://tomnomnom.com/talks/bug-bounties-with-bash-virsec.pdf)
๐ฃ_vavkamil_
๐@malwr
๐ฃ_vavkamil_
๐@malwr
NTLM Relay - an estimated 47 minute read (in-depth) which explains NTLM relaying in depth
๐ฃdigicat
๐@malwr
๐ฃdigicat
๐@malwr
hackndo
NTLM Relay
NTLM relay is a technique of standing between a client and a server to perform actions on the server while impersonating the client. Protections such as SMB signing or MIC allow to limit the actions of an attacker. This article goes into detail about thisโฆ
China's "New IP" proposal to replace TCP/IP has a built in "shut up command" for censorship
๐ฃTemptunes48
Oh look, more Chinese tools of oppression for American companies like Cisco to implement.
๐คElliotsRebirth
nice
๐คlummoxacillin
๐@malwr
๐ฃTemptunes48
Oh look, more Chinese tools of oppression for American companies like Cisco to implement.
๐คElliotsRebirth
nice
๐คlummoxacillin
๐@malwr
PIA
China's "New IP" proposal to replace TCP/IP has a built in "shut up command" for censorship
The Chinese government and the Chinese telecommunications companies such as Huawei under its control are proposing a โNew IPโ addressing system for the
All courses (including DFIR) are free at PluralSight during April 2020
๐ฃgreyyit
Here's just some of the malware related courses.
https://www.pluralsight.com/search?q=malware&categories=course
๐คgreyyit
๐@malwr
๐ฃgreyyit
Here's just some of the malware related courses.
https://www.pluralsight.com/search?q=malware&categories=course
๐คgreyyit
๐@malwr
An old enemy โ Diving into QBot part 1
๐ฃStruppigel
Nice, so this is the packer piece? There's lots of fun algorithms involved in qbot, if you run into problems or have questions feel free to ask.
๐คsysopfb
๐@malwr
๐ฃStruppigel
Nice, so this is the packer piece? There's lots of fun algorithms involved in qbot, if you run into problems or have questions feel free to ask.
๐คsysopfb
๐@malwr
Malware and Stuff
An old enemy โ Diving into QBot part 1
While checking out the Triage Sandbox[1] I stumbled across upon QBot which Iโve seen already plenty of times at work at GData Cyberdefense AG[2]. This time I wanted to take a closer look at tโฆ
Attack Chain Series: Remote Access Service Compromise Part 1 โ RDS - relevant in the age of rapid remote access infrastructure (spoiler: password spraying)
๐ฃdigicat
๐@malwr
๐ฃdigicat
๐@malwr
Medium
Attack Chain Series: Remote Access Service Compromise Part 1 โ RDS
This post covers initial compromise via the RDS service, bypassing AppLocker and AMSI protections, and domain/trust compromise.