⤷ Title: NativeDump: Stealthy LSASS Dumping Tool Bypasses EDRs Using Only NTAPIs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:29:01 +0000
════════════════════════
⌗ Tags: #Open Source Tool #credential dumping #cybersecurity #Evasion #LSASS #Mimikatz #NativeDump #Offensive Security #pypykatz #Red Team #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:29:01 +0000
════════════════════════
⌗ Tags: #Open Source Tool #credential dumping #cybersecurity #Evasion #LSASS #Mimikatz #NativeDump #Offensive Security #pypykatz #Red Team #Windows Security
Penetration Testing Tools
NativeDump: Stealthy LSASS Dumping Tool Bypasses EDRs Using Only NTAPIs
NativeDump is a new tool for stealthy LSASS process dumping using only NTAPIs, bypassing EDRs to extract credentials for tools like Mimikatz or Pypykatz.
⤷ Title: HTB_Academy: Extracting Passwords from Windows Systems Part 2:Attacking LSASS
════════════════════════
𐀪 Author: Babatunde Ojo
════════════════════════
ⴵ Time: Wed, 15 Oct 2025 18:09:04 GMT
════════════════════════
⌗ Tags: #windows #htb #hacking #passwords #lsass
════════════════════════
𐀪 Author: Babatunde Ojo
════════════════════════
ⴵ Time: Wed, 15 Oct 2025 18:09:04 GMT
════════════════════════
⌗ Tags: #windows #htb #hacking #passwords #lsass
Medium
HTB_Academy: Extracting Passwords from Windows Systems Part 2:Attacking LSASS
LSASS is a core Windows process responsible for enforcing security policies, handling user authentication, and storing sensitive credential…
⤷ Title: LSASS-Free Larceny: Extracting NTLMv1 Hashes with DumpGuard BOF
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 04:51:09 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BOF #credential dumping #Cybersecurity 2026 #DumpGuard #Havoc C2 #LSASS #NTLMv1 #red teaming #Remote Credential Guard #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 04:51:09 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BOF #credential dumping #Cybersecurity 2026 #DumpGuard #Havoc C2 #LSASS #NTLMv1 #red teaming #Remote Credential Guard #Windows Security
Information Security News
LSASS-Free Larceny: Extracting NTLMv1 Hashes with DumpGuard BOF
DumpGuard BOF Beacon Object File (BOF) port of DumpGuard for extracting NTLMv1 hashes from sessions on modern Windows systems. This repository contains a Beacon Object File (BOF) implementation of…
⤷ Title: Patch Tuesday Jan 2026: Microsoft Fixes 114 Flaws & 3 Zero-Days
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 00:11:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Agere Soft Modem #CISA #CVE_2026_20805 #LSASS #Microsoft #Office Vulnerability #Patch Tuesday #Secure Boot #Windows Security #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 00:11:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Agere Soft Modem #CISA #CVE_2026_20805 #LSASS #Microsoft #Office Vulnerability #Patch Tuesday #Secure Boot #Windows Security #zero_day
Daily CyberSecurity
Patch Tuesday Jan 2026: Microsoft Fixes 114 Flaws & 3 Zero-Days
Microsoft Jan 2026 Patch Tuesday fixes 114 flaws, including 3 zero-days. CVE-2026-20805 is actively exploited. Update Windows & Office immediately.
⤷ Title: Microsoft’s 2026 Kickoff: 110+ Patches Fix Active Zero-Days and Office Flaws
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 08:24:36 +0000
════════════════════════
⌗ Tags: #Vulnerability #Windows #CVE_2026_20805 #cybersecurity #Infosec News #LSASS #Microsoft #Office 2026 #Patch Tuesday #RCE #Secure Boot #Windows 11 #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 15 Jan 2026 08:24:36 +0000
════════════════════════
⌗ Tags: #Vulnerability #Windows #CVE_2026_20805 #cybersecurity #Infosec News #LSASS #Microsoft #Office 2026 #Patch Tuesday #RCE #Secure Boot #Windows 11 #zero_day
Penetration Testing Tools
Microsoft's 2026 Kickoff: 110+ Patches Fix Active Zero-Days and Office Flaws
Microsoft has inaugurated its first Patch Tuesday of 2026, disseminating a comprehensive suite of mandatory security remediations for
⤷ Title: Screaming at the Kernel: How GhostKatz Uses “Vulnerable Drivers” to Dump Credentials via Physical Memory
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:00:10 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Aggressor Script #BYOVD #Cobalt Strike #credential exfiltration #Erik Esquivel #GhostKatz #Julian Peña #kernel exploitation #LSASS dump #MmMapIoSpace #red team tools #Tech News 2026
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:00:10 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Aggressor Script #BYOVD #Cobalt Strike #credential exfiltration #Erik Esquivel #GhostKatz #Julian Peña #kernel exploitation #LSASS dump #MmMapIoSpace #red team tools #Tech News 2026
Information Security News
Screaming at the Kernel: How GhostKatz Uses “Vulnerable Drivers” to Dump Credentials via Physical Memory
Security researcher Julian Peña has unveiled GhostKatz, a formidable new utility engineered to exfiltrate credentials from the LSASS process by directly accessing a computer’s physical memor…
⤷ Title: Targeting the Grid: ESET Unmasks “DynoWiper” After Destructive Strike on Polish Energy Sector
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 03:50:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Active Directory GPO #Critical Infrastructure #cyber sabotage #data wiper #DynoWiper #ESET research #LSASS memory dump #Poland energy sector #rsocx #Rubeus #Sandworm #Tech News 2026 #ZOV wiper
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 03:50:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Active Directory GPO #Critical Infrastructure #cyber sabotage #data wiper #DynoWiper #ESET research #LSASS memory dump #Poland energy sector #rsocx #Rubeus #Sandworm #Tech News 2026 #ZOV wiper
Penetration Testing Tools
Targeting the Grid: ESET Unmasks "DynoWiper" After Destructive Strike on Polish Energy Sector
ESET has disclosed the intricate technical specifications of an incursion involving a nascent data-obliteration utility designated as DynoWiper.
⤷ Title: Beyond the Memory: How LSA Whisperer BOF Bypasses PPL and Credential Guard Without Touching LSASS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 03:04:12 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BOF #Cloud SSO #Cobalt Strike #Credential Guard #DPAPI #Kerberos #LSA Whisperer #LsaCallAuthenticationPackage #LSASS #Pentesting #PPL #red teaming #SpecterOps #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 03:04:12 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BOF #Cloud SSO #Cobalt Strike #Credential Guard #DPAPI #Kerberos #LSA Whisperer #LsaCallAuthenticationPackage #LSASS #Pentesting #PPL #red teaming #SpecterOps #Windows Security
Penetration Testing Tools
Beyond the Memory: How LSA Whisperer BOF Bypasses PPL and Credential Guard Without Touching LSASS
Interact with Kerberos and DPAPI without opening an LSASS handle. LSA Whisperer BOF uses official APIs to bypass PPL and Credential Guard during red teaming.
⤷ Title: Attacking LSASS: HackTheBox Walkthrough | Peneteration Tester Path
════════════════════════
𐀪 Author: zerodaystudios
════════════════════════
ⴵ Time: Thu, 26 Feb 2026 03:41:00 GMT
════════════════════════
⌗ Tags: #penetration_testing #hacking #lsass #ethical_hacking #windows
════════════════════════
𐀪 Author: zerodaystudios
════════════════════════
ⴵ Time: Thu, 26 Feb 2026 03:41:00 GMT
════════════════════════
⌗ Tags: #penetration_testing #hacking #lsass #ethical_hacking #windows
Medium
Attacking LSASS: HackTheBox Walkthrough | Peneteration Tester Path
Step 1: Creating an LSASS Memory Dump (Task Manager Method)
⤷ Title: Beyond Email: Attackers Hijack Microsoft Teams External Access to Launch Deep Network Compromise
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:18:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_36036 #Cyber Security #Dumpit #External Access Configuration #Incident Response #infosec #Kerberoasting #LSASS Memory Dump #Microsoft Teams phishing #Rapid7 Labs #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:18:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_36036 #Cyber Security #Dumpit #External Access Configuration #Incident Response #infosec #Kerberoasting #LSASS Memory Dump #Microsoft Teams phishing #Rapid7 Labs #social engineering
Daily CyberSecurity
Beyond Email: Attackers Hijack Microsoft Teams External Access to Launch Deep Network Compromise
Rapid7 Labs exposes how attackers are abusing Microsoft Teams external access and Dumpit memory scrapers to breach corporate networks. Protect your team!