BaffledJimmy
@baffledjimmy
ID: 931892172944748544
18-11-2017 14:29:42
410 Tweet
448 Followers
226 Following
In our latest research, Rob Maslen dives in to the LastPass password manager mdsec.co.uk/2022/10/analys…
@rkornmeyerX Justin Elze I know it’s been a meme for a while, but my experience with EDR and other technical tooling is that they are essentially Cobalt Strike detectors. They’re focused so heavily on developing detections on certain product IOCs and not the actual TTPs being leveraged.
Introducing ETWHash! ETWHash is a new method and tool by Lefteris Panos for consuming SMB events from Event Tracing for Windows (ETW) and extracting NetNTLMv2 hashes for cracking offline. labs.nettitude.com/blog/etwhash-h…
I’ve just publicly released SQLRecon v3.3. This release includes many features that were used privately by the X-Force Red Adversary Services team on real-world red team operations. Please share, enjoy, and use responsibility. Hmu if you have any questions! github.com/xforcered/SQLR…