#metasploit — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #metasploit, aggregated by home.social.
-
CVE-2026-77806, a CVSS 9.8 SPIP unauthenticated RCE, is exploited in the wild. A public Metasploit module and full details are now available.
#CVE202677806 #SPIP #RCE #ExploitedInTheWild #Metasploit #CMS
-
CVE-2026-77806, a CVSS 9.8 SPIP unauthenticated RCE, is exploited in the wild. A public Metasploit module and full details are now available.
#CVE202677806 #SPIP #RCE #ExploitedInTheWild #Metasploit #CMS
-
@schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground
-
@schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground
-
@schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground
-
@schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground
-
@schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground
-
🛡️ METASPLOIT CHEAT SHEET
Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.
This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀
⚠️ For cybersecurity education and authorized security testing only.
💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.
#Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid
-
🛡️ METASPLOIT CHEAT SHEET
Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.
This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀
⚠️ For cybersecurity education and authorized security testing only.
💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.
#Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid
-
🛡️ METASPLOIT CHEAT SHEET
Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.
This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀
⚠️ For cybersecurity education and authorized security testing only.
💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.
#Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid
-
🛡️ METASPLOIT CHEAT SHEET
Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.
This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀
⚠️ For cybersecurity education and authorized security testing only.
💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.
#Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid
-
🛡️ METASPLOIT CHEAT SHEET
Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.
This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀
⚠️ For cybersecurity education and authorized security testing only.
💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.
#Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid
-
Книга: «The Ultimate Kali Linux Book: Использование Nmap, Metasploit, Aircrack-ng и Empire для пентестинга. 3-е изд.»
Привет, Хаброжители! Откройте для себя захватывающий мир Kali Linux — ведущей платформы для продвинутого тестирования на проникновение. Оттачивайте навыки, проводите сложные пентесты в корпоративных сетях — Kali Linux предоставляет специалистам по кибербезопасности все необходимые для этого инструменты. Наиболее полное руководство по этичному взлому и тестированию на проникновение в Kali Linux для новичков и профессионалов.
https://habr.com/ru/companies/piter/articles/1065340/
#kali_linux #nmap #metasploit #aircrackng #empire #пентестинг
-
Книга: «The Ultimate Kali Linux Book: Использование Nmap, Metasploit, Aircrack-ng и Empire для пентестинга. 3-е изд.»
Привет, Хаброжители! Откройте для себя захватывающий мир Kali Linux — ведущей платформы для продвинутого тестирования на проникновение. Оттачивайте навыки, проводите сложные пентесты в корпоративных сетях — Kali Linux предоставляет специалистам по кибербезопасности все необходимые для этого инструменты. Наиболее полное руководство по этичному взлому и тестированию на проникновение в Kali Linux для новичков и профессионалов.
https://habr.com/ru/companies/piter/articles/1065340/
#kali_linux #nmap #metasploit #aircrackng #empire #пентестинг
-
Книга: «The Ultimate Kali Linux Book: Использование Nmap, Metasploit, Aircrack-ng и Empire для пентестинга. 3-е изд.»
Привет, Хаброжители! Откройте для себя захватывающий мир Kali Linux — ведущей платформы для продвинутого тестирования на проникновение. Оттачивайте навыки, проводите сложные пентесты в корпоративных сетях — Kali Linux предоставляет специалистам по кибербезопасности все необходимые для этого инструменты. Наиболее полное руководство по этичному взлому и тестированию на проникновение в Kali Linux для новичков и профессионалов.
https://habr.com/ru/companies/piter/articles/1065340/
#kali_linux #nmap #metasploit #aircrackng #empire #пентестинг
-
CVE-2026-66066 (CVSS 9.5) enables Rails Active Storage RCE via libvips. A Metasploit module is now public. Upgrade Rails and rotate secrets.
#RubyOnRails #CVE202666066 #RCE #ActiveStorage #CyberSecurity #Metasploit
-
CVE-2026-66066 (CVSS 9.5) enables Rails Active Storage RCE via libvips. A Metasploit module is now public. Upgrade Rails and rotate secrets.
#RubyOnRails #CVE202666066 #RCE #ActiveStorage #CyberSecurity #Metasploit
-
CVE-2026-66066 (CVSS 9.5) enables Rails Active Storage RCE via libvips. A Metasploit module is now public. Upgrade Rails and rotate secrets.
#RubyOnRails #CVE202666066 #RCE #ActiveStorage #CyberSecurity #Metasploit
-
Extract Kerberos tickets from Windows targets using Kiwi in Meterpreter. Load Mimikatz into LSASS memory, then use kerberos_ticket_list to enumerate and kerberos_ticket_use to import tickets. Works on Windows 10 and Server 2012+. #metasploit #kiwi #ValtersIT
https://www.valtersit.com/vault/postexploitation-kerberos-ticket-extraction-with-kiwi-93b8d8/
-
The new #BashCore CLI build is ready! ✨
Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.
Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠
Uploading to the site soon!
-
The new #BashCore CLI build is ready! ✨
Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.
Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠
Uploading to the site soon!
-
The new #BashCore CLI build is ready! ✨
Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.
Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠
Uploading to the site soon!
-
The new #BashCore CLI build is ready! ✨
Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.
Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠
Uploading to the site soon!
-
The new #BashCore CLI build is ready! ✨
Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.
Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠
Uploading to the site soon!
-
New blog post!
I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.
Here are my thoughts on it:
-
New blog post!
I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.
Here are my thoughts on it:
-
New blog post!
I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.
Here are my thoughts on it:
-
New blog post!
I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.
Here are my thoughts on it:
-
New blog post!
I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.
Here are my thoughts on it:
-
Как наказать цифрового воробья или как я проходил таск PigeonsRevenge от платформы ACLabs.pro
Данный таск был частью 5 сезона CTF, который проходил на площадке ACLabs. Машина необычная с увлекательным сюжетом и интересными уязвимостями. Условие задачи: Борис — старый почтовый голубь. Катя, его голубка, улетела к наглому Воробью. Три дня Борис пил дешёвое пойло и строчил план мести. Теперь этот план у тебя. Помоги Борису пробраться в цифровое гнездо Воробья, украсть его аккаунт и стать рутом. Следуй за пьяными записками — там всё сказано и даже больше. Внимание, стенд будет полностью готов только по истечении обратного времени отсчета, даже если адрес появился раньше! Цепочка атаки Атакующая цепочка «PigeonsRevenge» комбинирует одну реальную критическую CVE (Webmin 1.910 — CVE-2019-15107, 9.8 CRITICAL) с набором классических техник ATT&CK : активная разведка → port knocking → эксплуатация публичного приложения → Metasploit reverse-shell → туннелирование Ligolo-ng → инъекция через переменную окружения в кастомный бинарник → обход фильтра табуляцией → закрепление с root -привилегиями.
https://habr.com/ru/articles/1024360/
#nmap #bash #docker #ssh #ghidra #cve #webmin #metasploit #privelege_escalation #pivoting
-
Как наказать цифрового воробья или как я проходил таск PigeonsRevenge от платформы ACLabs.pro
Данный таск был частью 5 сезона CTF, который проходил на площадке ACLabs. Машина необычная с увлекательным сюжетом и интересными уязвимостями. Условие задачи: Борис — старый почтовый голубь. Катя, его голубка, улетела к наглому Воробью. Три дня Борис пил дешёвое пойло и строчил план мести. Теперь этот план у тебя. Помоги Борису пробраться в цифровое гнездо Воробья, украсть его аккаунт и стать рутом. Следуй за пьяными записками — там всё сказано и даже больше. Внимание, стенд будет полностью готов только по истечении обратного времени отсчета, даже если адрес появился раньше! Цепочка атаки Атакующая цепочка «PigeonsRevenge» комбинирует одну реальную критическую CVE (Webmin 1.910 — CVE-2019-15107, 9.8 CRITICAL) с набором классических техник ATT&CK : активная разведка → port knocking → эксплуатация публичного приложения → Metasploit reverse-shell → туннелирование Ligolo-ng → инъекция через переменную окружения в кастомный бинарник → обход фильтра табуляцией → закрепление с root -привилегиями.
https://habr.com/ru/articles/1024360/
#nmap #bash #docker #ssh #ghidra #cve #webmin #metasploit #privelege_escalation #pivoting
-
Как наказать цифрового воробья или как я проходил таск PigeonsRevenge от платформы ACLabs.pro
Данный таск был частью 5 сезона CTF, который проходил на площадке ACLabs. Машина необычная с увлекательным сюжетом и интересными уязвимостями. Условие задачи: Борис — старый почтовый голубь. Катя, его голубка, улетела к наглому Воробью. Три дня Борис пил дешёвое пойло и строчил план мести. Теперь этот план у тебя. Помоги Борису пробраться в цифровое гнездо Воробья, украсть его аккаунт и стать рутом. Следуй за пьяными записками — там всё сказано и даже больше. Внимание, стенд будет полностью готов только по истечении обратного времени отсчета, даже если адрес появился раньше! Цепочка атаки Атакующая цепочка «PigeonsRevenge» комбинирует одну реальную критическую CVE (Webmin 1.910 — CVE-2019-15107, 9.8 CRITICAL) с набором классических техник ATT&CK : активная разведка → port knocking → эксплуатация публичного приложения → Metasploit reverse-shell → туннелирование Ligolo-ng → инъекция через переменную окружения в кастомный бинарник → обход фильтра табуляцией → закрепление с root -привилегиями.
https://habr.com/ru/articles/1024360/
#nmap #bash #docker #ssh #ghidra #cve #webmin #metasploit #privelege_escalation #pivoting
-
Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-04-03-2026/1
-
Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-04-03-2026/1
-
Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-04-03-2026/1
-
Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-04-03-2026/1
-
Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-04-03-2026/1
-
The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.
Check it out at https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-27-2026/
-
The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.
Check it out at https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-27-2026/
-
The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.
Check it out at https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-27-2026/
-
The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.
Check it out at https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-27-2026/
-
The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.
Check it out at https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-27-2026/
-
Como o exploit define o alvo (rhost & rport)
Quer entender como um exploit escolhe e ataca um alvo em segundos? ⚠️
• O que acontece nesse trecho:
- Ele setou "rhost" → o remote host (quem será atacado)
- Ele setou "rport" → o remote port (a porta alvo)
- Usa uma biblioteca com exploits prontos (ex: uma CVE de 2013)
- Fluxo: pega o código do exploit → seta host e porta → verifica se o alvo está ativo → executa•...
#Metasploit #exploits #cibersegurança #CVE #hacking #segurança #MorningCrypto
-
Como o exploit define o alvo (rhost & rport)
Quer entender como um exploit escolhe e ataca um alvo em segundos? ⚠️
• O que acontece nesse trecho:
- Ele setou "rhost" → o remote host (quem será atacado)
- Ele setou "rport" → o remote port (a porta alvo)
- Usa uma biblioteca com exploits prontos (ex: uma CVE de 2013)
- Fluxo: pega o código do exploit → seta host e porta → verifica se o alvo está ativo → executa•...
#Metasploit #exploits #cibersegurança #CVE #hacking #segurança #MorningCrypto
-
No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!
Read the full details: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-13-2026/ #Metasploit
-
No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!
Read the full details: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-13-2026/ #Metasploit
-
No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!
Read the full details: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-13-2026/ #Metasploit
-
No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!
Read the full details: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-13-2026/ #Metasploit
-
No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!
Read the full details: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-13-2026/ #Metasploit
-
Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-06-2026/ #Metasploit
-
Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-06-2026/ #Metasploit
-
Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-06-2026/ #Metasploit
-
Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-06-2026/ #Metasploit
-
Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: https://www.rapid7.com/blog/post/pt-metasploit-wrap-up-03-06-2026/ #Metasploit
-
Lateral movement w Active Directory z wykorzystaniem WinRM
Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....
#Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm
https://sekurak.pl/lateral-movement-w-active-directory-z-wykorzystaniem-winrm/
-
Lateral movement w Active Directory z wykorzystaniem WinRM
Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....
#Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm
https://sekurak.pl/lateral-movement-w-active-directory-z-wykorzystaniem-winrm/
-
Lateral movement w Active Directory z wykorzystaniem WinRM
Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....
#Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm
https://sekurak.pl/lateral-movement-w-active-directory-z-wykorzystaniem-winrm/
-
Lateral movement w Active Directory z wykorzystaniem WinRM
Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....
#Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm
https://sekurak.pl/lateral-movement-w-active-directory-z-wykorzystaniem-winrm/
-
Lateral movement w Active Directory z wykorzystaniem WinRM
Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....
#Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm
https://sekurak.pl/lateral-movement-w-active-directory-z-wykorzystaniem-winrm/
-
Stop reading theory without results.
This bundle combines the Master #Hacker ebook with hands-on video walkthroughs that turn recon, #Metasploit exploitation, AV evasion, and #Python #scripting into practical skills you can deploy immediately:
https://hackersarise.thinkific.com/bundles/master-hacker-bundle
#cybersecurity #infosec