Mayuresh 🇮🇳 (@pentestit) 's Twitter Profile
Mayuresh 🇮🇳

@pentestit

degradable

ID: 39453300

linkhttps://pentestit.com calendar_today12-05-2009 07:15:06

13,13K Tweet

11,11K Followers

2,2K Following

Empire (@empirec2project) 's Twitter Profile Photo

Empire v5.11.4 was just released with updates and bug fixes! - Updated Rubeus to v2.3.2 - Added nameserver check for linux hosts - Fixed Rubeus only using first arg - Fixed Rubeus killing agent when using System.Environment.Exit - And more

Mayuresh 🇮🇳 (@pentestit) 's Twitter Profile Photo

CVE-2024-20439: #Cisco Smart Licensing Utility #Static #Credential Vulnerability looks interesting. Any one have those credentials?

BC Security (@bcsecurity) 's Twitter Profile Photo

We are doing a giveaway for our Empire Ops: Tactics (Lazarus) course next week on Sep 11! Simply retweet this to enter, and we will announce the winner tomorrow at 1 PM EST. Come learn about ransomware simulation and threat emulation.

Vincent Le Toux (Paris, France) (@mysmartlogon) 's Twitter Profile Photo

#PingCastle 3.3 released !!! pingcastle.com/download/ Active Directory & AzureAD security health check in seconds >200k AD audited, management readable, no install, no admin, no data sent "to a cloud" Example of report: pingcastle.com/PingCastleFile… github: github.com/netwrix/pingca…

Mobile Hacker (@androidmalware2) 's Twitter Profile Photo

0-Click exploit discovered in MediaTek Wi-Fi chipsets affects routers and smartphones (CVE-2024-20017). Published PoC can be tested even from a smartphone Technical details: blog.coffinsec.com/0day/2024/08/3… PoC: github.com/mellow-hype/cv… by hypr

0-Click exploit discovered in MediaTek Wi-Fi chipsets affects routers and smartphones (CVE-2024-20017).
Published PoC can be tested even from a smartphone

Technical details: blog.coffinsec.com/0day/2024/08/3…
PoC: github.com/mellow-hype/cv… by <a href="/hyprdude/">hypr</a>
Ramin Farajpour Cami (@realraminfp) 's Twitter Profile Photo

🚀 The Fuzzing Educational Course is now publicly available! This comprehensive course covers techniques and tools for fuzzing in various languages such as Python, Go, Rust, Java, and Web. github.com/raminfp/the-ar… #Fuzzing #SoftwareSecurity #Education

🚀 The Fuzzing Educational Course is now publicly available! This comprehensive course covers techniques and tools for fuzzing in various languages such as Python, Go, Rust, Java, and Web.
github.com/raminfp/the-ar…

#Fuzzing #SoftwareSecurity #Education
ATT&CK (@mitreattack) 's Twitter Profile Photo

Virtual registration is open for ATT&CKcon 5.0! While we'd love to see you in person in McLean, VA October 22-23 (and still have a few tickets left at na.eventscloud.com/website/76470/), you can catch talks online for free by registering at mitre.brandlive.com/ATTACKCon-5-0/…

Virtual registration is open for ATT&amp;CKcon 5.0! 

While we'd love to see you in person in McLean, VA October 22-23 (and still have a few tickets left at na.eventscloud.com/website/76470/), you can catch talks online for free by registering at mitre.brandlive.com/ATTACKCon-5-0/…
Malcore (@malcoreio) 's Twitter Profile Photo

Introducing DOMHash. DOMHash is a completely self sustainable fuzzy hashing algorithm to compare DOM content from websites. It provides a similarity score in order to determine how similar two sites are to one another and is completely FREE and opensource. Thread👇

Introducing DOMHash. 

DOMHash is a completely self sustainable fuzzy hashing algorithm to compare DOM content from websites. 

It provides a similarity score in order to determine how similar two sites are to one another and is completely FREE and opensource.

Thread👇
ATT&CK (@mitreattack) 's Twitter Profile Photo

A Happy Halloween from the MITRE ATT&CK team with a special treat: ATT&CK v16.0, including new spooky behaviors and ghoulish groups, as well as revisions and contributions, to satisfy your every #infosec need! Check out Amy Robertson’s release blog at medium.com/mitre-attack/a…

Mickey Jin (@patch1t) 's Twitter Profile Photo

As promised, I just dropped a dozen new sandbox escape vulnerabilities at #POC2024 If you missed the talk, here is the blog post: jhftss.github.io/A-New-Era-of-m… Slides: github.com/jhftss/jhftss.… Enjoy and find your own bugs 😎

Yehuda Smirnov (@yudasm_) 's Twitter Profile Photo

Excited to share a tool I've been working on - ShadowHound. ShadowHound is a PowerShell alternative to SharpHound for Active Directory enumeration, using native PowerShell or ADModule (ADWS). As a bonus I also talk about some MDI detections and how to avoid them

Excited to share a tool I've been working on - ShadowHound.
ShadowHound is a PowerShell alternative to SharpHound for Active Directory enumeration, using native PowerShell or ADModule (ADWS). As a bonus I also talk about some MDI detections and how to avoid them
Andrea Pierini (@decoder_it) 's Twitter Profile Photo

M'm glad to release the tool I have been working hard on the last month: #KrbRelayEx A Kerberos relay & forwarder for MiTM attacks! >Relays Kerberos AP-REQ tickets >Manages multiple SMB consoles >Works on Win& Linux with .NET 8.0 >... GitHub: github.com/decoder-it/Krb…

M'm glad to release the tool I have been working hard on the last month: #KrbRelayEx
A  Kerberos relay &amp; forwarder for MiTM attacks! 
&gt;Relays Kerberos AP-REQ tickets 
&gt;Manages multiple SMB consoles 
&gt;Works on Win&amp; Linux with .NET 8.0
&gt;...
GitHub: github.com/decoder-it/Krb…
Comet (@cometml) 's Twitter Profile Photo

💥 ANNOUNCEMENT: Opik v1.2 is released! 💥 Opik is an open source LLM evaluation framework for: 🔥 Implementing LLM-based metrics 🪲 Logging/debugging LLM traces 💯 Scoring, annotating, and versioning LLM data And so much more. Check out the repo below.

Artem I. Baranov 🐦 (@artem_i_baranov) 's Twitter Profile Photo

hfiref0x has rewritten the formerly industry-wide and old-school tool Dependency Walker, making it capable of running on Win11 and enhancing it with other useful features. It is designed to build a tree diagram of all an executable's dependent modules. github.com/hfiref0x/WinDe…

Fabian Bader (@fabian_bader) 's Twitter Profile Photo

Do you know the Azure IP Ranges site by Daniel Falkner ? It's a great tool to filter IP ranges by service and even download them in different formats. azureipranges.azurewebsites.net

Do you know the Azure IP Ranges site by <a href="/derdanu/">Daniel Falkner</a> ?

It's a great tool to filter IP ranges by service and even download them in different formats.

azureipranges.azurewebsites.net
The Haag™ (@m_haggis) 's Twitter Profile Photo

🎯 Introducing AD-ThreatHunting: ⚡ Supercharge Your AD Threat Hunting! 🛡️ Just Released: A comprehensive Active Directory PowerShell threat hunting tool that makes detecting suspicious activities easier than ever! ✨ Key Features: • Real-time attack detection • Advanced

Malcore (@malcoreio) 's Twitter Profile Photo

Today we are releasing our FREE educational course: "Intro to Exploit Dev"! This course is perfect for those trying to start exploit dev and covers: - Tooling - Fuzzing - Exploitation techniques - And more! You can take the course here: bible.malcore.io/readme/the-beg…

Today we are releasing our FREE educational course: "Intro to Exploit Dev"!

This course is perfect for those trying to start exploit dev and covers:
- Tooling
- Fuzzing
- Exploitation techniques
- And more!

You can take the course here: bible.malcore.io/readme/the-beg…
Mayuresh 🇮🇳 (@pentestit) 's Twitter Profile Photo

Does anyone know if the following #Microsoft #mitigation has been released - techcommunity.microsoft.com/blog/microsoft…? I see the registry hive, but does not do anything against POCs on my Windows 11.