soka
@pentest_sokaredteam and maldev. https://t.co/sQ4uGBFJde
Similar User
@maki_mitz
@wil_fri3d
@Zk_Clown
@th1b4ud
@p1ckle_r1k
@EnlargeYourGeek
@___t0___
@_SIben_
@l4x4
@lfuret_
🚀 Big Announcement! 🚀 After 8+ years of working on PayloadsAllTheThings, I’m excited to release it as an ebook on Leanpub! 📖✨ To celebrate, I’m gifting 5 free copies to random retweeters! 🔥 👉 Retweet for a chance to win Thank you all for your incredible support! 🙌…
🌧️ On a rainy day, I dove into Pokémon Yellow glitches. Ever wondered how they work under the hood? As kids, we were already hackers manipulating bits in memory! 🔍👾 Read more in my latest blog post: swisskyrepo.github.io/Pokemon-Glitch…
Hunting for user tokens with CS Beacon, by @pentest_soka #redteam #maldev sokarepo.github.io/redteam/2024/0…
Monitor CobaltStrike beacon for Windows tokens and gain Kerberos persistence - @pentest_soka sokarepo.github.io/redteam/2024/0…
@Ze_Asimovitch and I have just released a new blog post on "How to create your own Mythic Agent en C" red-team-sncf.github.io/how-to-create-…
Performing kerberos cross domain authentication with impacket is not straightforward! If you want to authenticate on domain A (trusting domain B) with a userB you must ask a ST to domain B for krbtgt/domainA and then use this ST to request new ST to domainA, e.g.:
I wrote a blog about Cobalt Strike beacon monitoring, Windows tokens and Kerberos persistence. Check it out sokarepo.github.io/redteam/2024/0…
Currently playing with Windows tokens with BOF and Cobalt Strike. Anyone knows how to execute some Cobalt commands at regular intervals? I want to monitor new Windows tokens every X minutes?
I just released a blog post on how to perform "complete process hollowing" with IAT patching. red-team-sncf.github.io/complete-proce…
DLS 2024 - RedTeam Fails - "Oops my bad I ruined the operation", a story on how to fail a red team assessment 🦖 swisskyrepo.github.io/Drink-Love-Sha…
I just released a series of 2 blog posts about increasing your stealth capabilities during offensive operations. I hope you will find something useful! sokarepo.github.io/redteam/2024/0…
Merry Christmas, here is my gift to you 🎁 I'm releasing "Internal All The Things", which contains all my cheatsheets and methodologies for Active Directory, Internal Pentests and Cloud Assessments 🎅 swisskyrepo.github.io/InternalAllThe…
I just released a blogpost where I describe how two open source tools can be easily converted to Reflective DLL to be loaded in memory with Cobalt Strike. sokarepo.github.io/redteam/2023/1… This post comes along with github.com/sokaRepo/Coerc… which exists thanks to @Prepouce_ work
I just released my first blog post about finding a new SQLi payload vector and implement it in SQLMap. sokarepo.github.io/web/2023/08/24…
📝Want to know more? Check out my new blogpost! Forging tickets in 2023 with Impacket 🎟️. 0xdeaddood.rocks/2023/05/11/for…
[BLOG POST] Finally managed to write down a post about FunctionHijacking, a "new" process injection technique built upon Module/Function Stomping, along with my experiments to break behavioral based detection of other common process injection techniques. klezvirus.github.io/RedTeaming/AV_…
Added a quick check for @ly4k_’s CVE-2022-26923 to Certipy. If vulnerable, there will be no object SID printed when requesting a certificate based on the User or Machine template. P.S. Certipy indeed has one of the most neat and beautiful code bases in Python that I’ve seen 🫠
United States Trends
- 1. $CUTO 11,1 B posts
- 2. #FFNow N/A
- 3. Good Sunday 70,9 B posts
- 4. #sundayvibes 5.942 posts
- 5. #AskZB N/A
- 6. Xmas Drop 1.573 posts
- 7. DeFi 177 B posts
- 8. Bill of Rights Day N/A
- 9. Blessed Sunday 22,2 B posts
- 10. #SundayThoughts 1.164 posts
- 11. Sunday Funday 3.876 posts
- 12. Deion 18,1 B posts
- 13. Vindman 12,5 B posts
- 14. Donk 11,7 B posts
- 15. Louis Riddick N/A
- 16. #UFCTampa 62,8 B posts
- 17. Gaudete Sunday 1.440 posts
- 18. Shirley Temple N/A
- 19. Colby 34,3 B posts
- 20. Branch 38,9 B posts
Something went wrong.
Something went wrong.