Plus récents

TokenUniverse v0.3

Advanced tool for working with access tokens & Windows Security Policy

github.com/diversenok/TokenUni

SprayHound is now available on BlackArch Linux 😋​

PidLidReminderPwn.py

Exploiting Outlook CVE-2023-23397 using Python by sending the message through EWS

gist.github.com/tothi/d2d6c6a3

NewPowerDNS

Transfer files over DNS A records. NewPowerDNS is an updated version of PowerDNS by Dominic Chell (@domchell)

github.com/icyguider/NewPowerD

Hello /dev/null lovers.

Put your config in a file (E.g. lessdemo.cnf)


SHELL=/dev/null
LESSHISTFILE=/dev/null
blablabla
  • lesskey lessdemo.cnf

  • /bin/chmod 400 $HOME/.less

  • echo -n "HelloWorld" | less

No more .lesshst & if you try to execute a command ( CVE-2023–26604 ) like a !/bin/shpermission denied

Have fun ᕙ👹ᕗ

HTTP Toolkit

Targeted interception for specific clients rather than intercepting everything and so avoids capturing irrelevant traffic or disrupting other applications

httptoolkit.com

PolarProxy

  • Custom TLS Redirection

One new feature in PolarProxy is the --redirect argument, which can be used to redirect TLS traffic destined for a specific domain name to a different domain. This feature can be used to redirect TLS-encrypted malware traffic going to a known C2 domain to a local HTTPS sandbox.

netresec.com/?page=PolarProxy

dns.toys

A DNS server that takes creative liberties with the DNS protocol.

github.com/knadh/dns.toys

MemFiles

Cobalt Strike toolkit to write files produced by Beacon to memory instead of disk

github.com/Octoberfest7/MemFil

BokuLoader

PoC UDRL which aims to recreate, integrate, and enhance Cobalt Strike's evasion features for x64 HTTP/S beacons

github.com/xforcered/BokuLoade

Plus anciens
nanao

Comme le soleil, les machines ne se couchent jamais.