Guglielmo Scaiola (@s0ftwargs) 's Twitter Profile
Guglielmo Scaiola

@s0ftwargs

Solution Architect @iCubed - I.T. Consultant, Speaker, Trainer, Red-Teamer,PenTester and Security Consultant, former Army Paratrooper. Opinions are my own

ID: 479875890

linkhttp://s0ftwargs.com/ calendar_today31-01-2012 21:36:10

2,2K Tweet

588 Takipçi

256 Takip Edilen

Hope Walker (@icemoonhsv) 's Twitter Profile Photo

Pull requests accepted for SharpUp! ProcessDLLHijack and ModifableScheduledTask modules are now available. github.com/GhostPack/Shar…

Florian Hansemann (@cyberwarship) 's Twitter Profile Photo

"Taking the pain out of C2 Infrastructure (Part 1)" #infosec #redteam #pentest byt3bl33d3r.substack.com/p/taking-the-p… Part 2 #redteam #infosec #pentest byt3bl33d3r.substack.com/p/taking-the-p…

Cn33liz (@cneelis) 's Twitter Profile Photo

Today is #BOFFriday! Time for some new candy: > New BOF for CVE-2022-26923 > New BOF KerbHash (hash passwds to kerberos keys) > New BOF version of PetitPotam attack > Domaininfo updated with Azure support Check out the Outflank C2-Tool-Collection repo: github.com/outflanknl/C2-…

sinusoid (@the_bit_diddler) 's Twitter Profile Photo

Have multiple engagements, past and present? Wanting more flexibility in your download locations? You asked, I listened. Now you can specify synchronization between Cobalt Strike download locations on a per TeamServer basis. More tools coming shortly. bit.ly/3FK0wM5

an0n (@an0n_r0) 's Twitter Profile Photo

Reproduced the MS-MSDT Office RCE (on up-to-date Win10 and up-to-date Office 2019). Had some troubles with building the appropriate docx with external HTML reference, so quickly made some notes how to do it, step-by-step: gist.github.com/tothi/66290a42…

Reproduced the MS-MSDT Office RCE (on up-to-date Win10 and up-to-date Office 2019). Had some troubles with building the appropriate docx with external HTML reference, so quickly made some notes how to do it, step-by-step: gist.github.com/tothi/66290a42…
mgeeky | Mariusz Banach (@mariuszbit) 's Twitter Profile Photo

MS Defender for Endpoint detects Primary Refresh Token (PRT) extraction based on ProcessCreate event with BrowserCore.exe Guess what? Copy BrowserCore.exe to %TEMP%\random.exe - no more detections ¯\_(ツ)_/¯ Got it implemented in my sponsorware SharpPRT for anyone intersted :)

MS Defender for Endpoint detects Primary Refresh Token (PRT) extraction based on ProcessCreate event with BrowserCore.exe

Guess what? 
Copy BrowserCore.exe to %TEMP%\random.exe - no more detections ¯\_(ツ)_/¯

Got it implemented in my sponsorware SharpPRT for anyone intersted :)
Florian Hansemann (@cyberwarship) 's Twitter Profile Photo

"SharpEventPersist: Persistence by writing/reading shellcode from Event Log" #pentest #redteam #infosec github.com/improsec/Sharp…

"SharpEventPersist: Persistence by writing/reading shellcode from Event Log"

#pentest #redteam #infosec
github.com/improsec/Sharp…
Emeric Nasi (@emericnasi) 's Twitter Profile Photo

Another #ShellcodePack video by MC JR! Stealthy XLL generation running a Sliver implant. With AV running in background of course :) vimeo.com/728885276

Oliver Lyak (@ly4k_) 's Twitter Profile Photo

Today we're publishing new techniques for recovering NTLM hashes from encrypted credentials protected by Windows Defender Credential Guard. These techniques also work on victims logged on before the server was compromised. research.ifcr.dk/pass-the-chall…

🥝🏳️‍🌈 Benjamin Delpy (@gentilkiwi) 's Twitter Profile Photo

Of course it's disputed... 😅 #keepass Will Schroeder Do not forget policies..., enforced ones ! > keepass.info/help/kb/config… "Disable trigger system" / "Disable trigger system, delete user triggers" + <ExportNoKey>false</ExportNoKey>

Of course it's disputed... 😅 #keepass <a href="/harmj0y/">Will Schroeder</a> 

Do not forget policies..., enforced ones !
&gt; keepass.info/help/kb/config…

"Disable trigger system" / "Disable trigger system, delete user triggers" + &lt;ExportNoKey&gt;false&lt;/ExportNoKey&gt;
Vincent Le Toux (Paris, France) (@mysmartlogon) 's Twitter Profile Photo

#PingCastle 3.0 released !!! pingcastle.com/download/ Active Directory & AzureAD security health check in seconds >200k AD audited, management readable, no install, no admin, no data sent "to a cloud" Example of report: pingcastle.com/PingCastleFile… github: github.com/vletoux/pingca…