Qazeer (@_qazeer) 's Twitter Profile
Qazeer

@_qazeer

ID: 1326572685506334725

linkhttps://qazeer.io/ calendar_today11-11-2020 17:09:20

16 Tweet

229 Followers

145 Following

mpgn (@mpgn_x64) 's Twitter Profile Photo

🇫🇷🎙️ Nouvel épisode du podcast Hack'n Speak avec Maxime Meignan & Qazeer pour parler de leur outil EDRSandBlast 🚀 Une interview un peu plus technique que d'habitude où l'on parle du fonctionnement d'un EDR et des mécanismes de contournement 🔥 Bonne écoute 🎶anchor.fm/hacknspeak

Alice Climent-Pommeret (@alicecliment) 's Twitter Profile Photo

You enjoyed the awesome EDRSandblast tool of Maxime Meignan and Qazeer and want to know more about the vulnerability used in the MSI AfterBurner driver to play in the kernel mode ? Go check the vulnerability analysis done by hfiref0x swapcontext.blogspot.com/2020/01/unwind…

Will Schroeder (@harmj0y) 's Twitter Profile Photo

Hey, do you like tokens? Have you always wanted to "harvest" tokens for offensive purposes? If so check out my new post posts.specterops.io/koh-the-token-… where I show I can (finally) write a technical post without memes, and then check out the Koh toolset at github.com/GhostPack/Koh

Maxime Meignan (@th3m4ks) 's Twitter Profile Photo

A promise is a promise: the slides from the #DEFCON30 DemoLabs Qazeer and I presented about EDRSandblast are uploaded on GitHub (github.com/wavestone-cdt/…), along with the latest version of the tool! Check out the list of new features in the slides, documentation is on its way ;)

NoLimitSecu (@nolimitsecu) 's Twitter Profile Photo

#Podcast #Cybersécurité Épisode #387 consacré à l'outil de contournement des EDR, "EDR Sandblast", avec Maxime Meignan et Qazeer nolimitsecu.fr/edrsandblast/

Jean Marsault (@iansus) 's Twitter Profile Photo

🚩 Wavestone France CTF team #YoloSw4g ranks first of 80+ teams at #CyberEx23! 🚩 Thanks INCIBE and OEA Ciberseguridad for the organization & challenges! 🚩 Congratz to Qazeer Maxime Meignan and Dlvl François for the great team we've been for the last 8 hours, now we go to a well-deserved sleep!

🚩 <a href="/wavestoneFR/">Wavestone France</a> CTF team #YoloSw4g ranks first of 80+ teams at #CyberEx23!
 
🚩 Thanks <a href="/INCIBE/">INCIBE</a>  and <a href="/OEA_Cyber/">OEA Ciberseguridad</a> for the organization &amp; challenges!

🚩 Congratz to <a href="/_Qazeer/">Qazeer</a> <a href="/th3m4ks/">Maxime Meignan</a> and <a href="/meaz0u/">Dlvl François</a> for the great team we've been for the last 8 hours, now we go to a well-deserved sleep!
Maxime Meignan (@th3m4ks) 's Twitter Profile Photo

How to disable some parts of EDR’s telemetry on Windows 10? Just ask nicely! See riskinsight-wavestone.com/en/2023/10/a-u… for more info about an interesting logic bug we found on Win10 that affects all EDRs 😉

Invictus Incident Response (@invictusir) 's Twitter Profile Photo

What a glorious day for Incident Responders around the world! Premium audit events in Microsoft 365 are now available to non-premium users. 🚨Action for you: - Check your mailbox audit settings, details in the blog: techcommunity.microsoft.com/t5/security-co…

What a glorious day for Incident Responders around the world! Premium audit events in Microsoft 365 are now available to non-premium users. 

🚨Action for you:
- Check your mailbox audit settings, details in the blog:
techcommunity.microsoft.com/t5/security-co…
Renzon (@r3nzsec) 's Twitter Profile Photo

I recently co-authored a Unit 42 blog about a unique IR case in which a threat actor’s custom EDR bypass (using #BYOVD) exposed their toolkit, methods, and even identity. Check out how we unmasked them through an opsec slip-up! #dfir unit42.paloaltonetworks.com/edr-bypass-ext…