Offensive Xwitter
19.3K subscribers
909 photos
49 videos
21 files
2.09K links
~$ socat TWITTER-LISTEN:443,fork,reuseaddr TELEGRAM:1.3.3.7:31337

Disclaimer: https://t.iss.one/OffensiveTwitter/546
Download Telegram
Forwarded from Offensive Xwitter Eye
😈 [ aetsu, π•¬π–Šπ–™π–˜π–š ]

A blueprint for evading industry leading endpoint protection in 2022 -> https://t.co/Vf69P9ZUuA

πŸ”— https://vanmieghem.io/blueprint-for-evading-edr-in-2022/

πŸ₯ [ tweet ]
πŸ”₯2
Forwarded from Offensive Xwitter Eye
😈 [ harmj0y, Will Schroeder ]

In my first foray into what @moo_hax terms "Offensive ML", I took at shot at data mining documents for passwords using deep learning. You can read about the approach at https://t.co/oL7jBbPiJQ and can find the notebook + Dockerized model at https://t.co/jXsMDVEwOo

πŸ”— https://posts.specterops.io/deeppass-finding-passwords-with-deep-learning-4d31c534cd00
πŸ”— https://github.com/GhostPack/DeepPass

πŸ₯ [ tweet ]
πŸ”₯1
Forwarded from Offensive Xwitter Eye
😈 [ C5pider, 5pider ]

Wrote a shitty Lsass memory parser. Always wanted to learn how mimikatz parses the Lsass memory. Harder than expected but got it to work. No code/memory cleanup for now lol.

πŸ₯ [ tweet ]
Forwarded from Offensive Xwitter Eye
πŸ‘2
😈 [ skelsec, SkelSec ]

Long time since I last wrote an article. Nothing earth-shattering, but fun!

πŸ”— https://skelsec.medium.com/lsass-needs-an-iv-57b7333d50d8

πŸ₯ [ tweet ]
Forwarded from Offensive Xwitter Eye
😈 [ Dinosn, Nicolas Krassas ]

Articles with ready to use commands for pentest and CTF

https://t.co/zMnvHt01qU

πŸ”— https://hideandsec.sh/books/cheatsheets-82c

πŸ₯ [ tweet ]
Forwarded from Offensive Xwitter Eye
😈 [ DirectoryRanger, DirectoryRanger ]

WMEye. tool for performing Lateral Movement using WMI and remote MSBuild Execution
https://t.co/wi9ZdNVrof

πŸ”— https://github.com/pwn1sher/WMEye

πŸ₯ [ tweet ]
Forwarded from Offensive Xwitter Eye
😈 [ DirectoryRanger, DirectoryRanger ]

S4uDelegator. tool to perform S4U logon with SeTcbPrivilege, by @@daem0nc0re
https://t.co/7qFTFtX6Um

πŸ”— https://github.com/daem0nc0re/PrivFu#s4udelegator

πŸ₯ [ tweet ]
πŸ‘1
😈 [ m3g9tr0n, Spiros Fraganastasis ]

How the Active Directory Replication Model Works
https://t.co/oQKPMswqK5

πŸ”— https://premglitz.wordpress.com/2013/03/20/how-the-active-directory-replication-model-works/

πŸ₯ [ tweet ]
πŸ”₯2πŸ‘1
😈 [ citronneur, Sylvain Peyrefitte ]

Time Travel Debugging for #IDA https://t.co/9QRB0UBuAy

πŸ”— https://github.com/airbus-cert/ttddbg

πŸ₯ [ tweet ]
πŸ‘1
Forwarded from Offensive Xwitter Eye
πŸ‘Ή [ snovvcrash, snπŸ₯ΆvvcrπŸ’₯sh ]

Two-week security assessment is over, finally… Way too many lessons learned, oh well. Here’s the final step of taking down the critical OpenShift cluster with a single curl (hard-coded tokens is always a bad idea). So current mood is like the Burning Chrome last paragraphs 🫑

πŸ₯ [ tweet ]