
Nikhith
@nikhith_
Incident Response guy | Ex-Threat Hunter @Microsoft | Ex-Red Team @Mandiant |
RCE || GTFO | πͺ Paragliding P2 Pilot | π€Ώ Scuba EXP30
ID: 319078520
https://www.hackthebox.eu/home/users/profile/8948 17-06-2011 14:40:49
3,3K Tweet
1,1K Followers
920 Following










The ADSyncCertDump tool is now part of the adconnectdump tools and can be used to extract SP credentials from Entra ID connect hosts. I will cover that during my BH/DC talks today and Friday! Tool is heavily based on Shwmae by CCobπ΄σ §σ ’σ ·σ ¬σ ³σ Ώ

pwnmachine πΎ When product is just a thin wrapper around something else, itβs only a matter of time before the original adds that feature themselves.



New RE Blog Post: RustyPages-Pt1 the-sequence.com/rustypages-mal⦠We RE a Rust dropper, that sets persistence and runs the downloaded next stage, queries Patrick Wardle's tools, and quiets notifications. We included relevant IOCs as we continue our analysis of the loader for Part 2. :)



