home.social

#metasploit — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #metasploit, aggregated by home.social.

fetched live
  1. @schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground

  2. @schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground

  3. @schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground

  4. @schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground

  5. @schrotthaufen ten years ago there were like two or three dozen people who routinely published stuff like this on the weekly. it was so glorious. i remember sitting on freenode in the #metasploit channel and participating in late saturday night 'oh hey so i just pushed this to the dev branch of msf, who wants to help test?'. miss those days. twitter changed their policy and it all went underground

  6. 🛡️ METASPLOIT CHEAT SHEET

    Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.

    This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀

    ⚠️ For cybersecurity education and authorized security testing only.

    💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.

    #Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid

  7. 🛡️ METASPLOIT CHEAT SHEET

    Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.

    This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀

    ⚠️ For cybersecurity education and authorized security testing only.

    💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.

    #Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid

  8. 🛡️ METASPLOIT CHEAT SHEET

    Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.

    This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀

    ⚠️ For cybersecurity education and authorized security testing only.

    💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.

    #Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid

  9. 🛡️ METASPLOIT CHEAT SHEET

    Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.

    This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀

    ⚠️ For cybersecurity education and authorized security testing only.

    💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.

    #Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid

  10. 🛡️ METASPLOIT CHEAT SHEET

    Metasploit is one of the most powerful and widely used penetration testing frameworks. 💻⚡ From exploit modules and payloads to auxiliary tools, sessions and post-exploitation, understanding its structure is an essential skill for security professionals.

    This cheat sheet covers the core Metasploit concepts and commands you need to navigate the framework, configure modules and work efficiently inside msfconsole. 🔐🚀

    ⚠️ For cybersecurity education and authorized security testing only.

    💬 Comment “METASPLOIT” if you want more cybersecurity cheat sheets.

    #Metasploit #CyberSecurity #Pentesting #EthicalHacking #CyberKid

  11. Книга: «The Ultimate Kali Linux Book: Использование Nmap, Metasploit, Aircrack-ng и Empire для пентестинга. 3-е изд.»

    Привет, Хаброжители! Откройте для себя захватывающий мир Kali Linux — ведущей платформы для продвинутого тестирования на проникновение. Оттачивайте навыки, проводите сложные пентесты в корпоративных сетях — Kali Linux предоставляет специалистам по кибербезопасности все необходимые для этого инструменты. Наиболее полное руководство по этичному взлому и тестированию на проникновение в Kali Linux для новичков и профессионалов.

    habr.com/ru/companies/piter/ar

    #kali_linux #nmap #metasploit #aircrackng #empire #пентестинг

  12. Книга: «The Ultimate Kali Linux Book: Использование Nmap, Metasploit, Aircrack-ng и Empire для пентестинга. 3-е изд.»

    Привет, Хаброжители! Откройте для себя захватывающий мир Kali Linux — ведущей платформы для продвинутого тестирования на проникновение. Оттачивайте навыки, проводите сложные пентесты в корпоративных сетях — Kali Linux предоставляет специалистам по кибербезопасности все необходимые для этого инструменты. Наиболее полное руководство по этичному взлому и тестированию на проникновение в Kali Linux для новичков и профессионалов.

    habr.com/ru/companies/piter/ar

    #kali_linux #nmap #metasploit #aircrackng #empire #пентестинг

  13. Книга: «The Ultimate Kali Linux Book: Использование Nmap, Metasploit, Aircrack-ng и Empire для пентестинга. 3-е изд.»

    Привет, Хаброжители! Откройте для себя захватывающий мир Kali Linux — ведущей платформы для продвинутого тестирования на проникновение. Оттачивайте навыки, проводите сложные пентесты в корпоративных сетях — Kali Linux предоставляет специалистам по кибербезопасности все необходимые для этого инструменты. Наиболее полное руководство по этичному взлому и тестированию на проникновение в Kali Linux для новичков и профессионалов.

    habr.com/ru/companies/piter/ar

    #kali_linux #nmap #metasploit #aircrackng #empire #пентестинг

  14. Extract Kerberos tickets from Windows targets using Kiwi in Meterpreter. Load Mimikatz into LSASS memory, then use kerberos_ticket_list to enumerate and kerberos_ticket_use to import tickets. Works on Windows 10 and Server 2012+. #metasploit #kiwi #ValtersIT

    valtersit.com/vault/postexploi

  15. The new #BashCore CLI build is ready! ✨

    ​Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.

    ​Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠

    ​Uploading to the site soon!

    #AI #Infosec #Privacy #Linux

  16. The new #BashCore CLI build is ready! ✨

    ​Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.

    ​Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠

    ​Uploading to the site soon!

    #AI #Infosec #Privacy #Linux

  17. The new #BashCore CLI build is ready! ✨

    ​Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.

    ​Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠

    ​Uploading to the site soon!

    #AI #Infosec #Privacy #Linux

  18. The new #BashCore CLI build is ready! ✨

    ​Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.

    ​Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠

    ​Uploading to the site soon!

    #AI #Infosec #Privacy #Linux

  19. The new #BashCore CLI build is ready! ✨

    ​Integrated OpenCode AI directly into the terminal. Tested it by letting the agent autonomously run #nmap and #Metasploit modules to pentest my custom hardware VPN gateway. It delivered a full security audit in seconds using minimal tokens.

    ​Looking back to a few years ago when I was just moving my first steps in cybersecurity and custom distros, seeing this architecture work feels amazing 🫠

    ​Uploading to the site soon!

    #AI #Infosec #Privacy #Linux

  20. New blog post!

    I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.

    Here are my thoughts on it:

    ti-kallisti.com/certs/osep.html

    #InfoSec #RedTeam #RedTeaming #EDR #Offsec #Metasploit

  21. New blog post!

    I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.

    Here are my thoughts on it:

    ti-kallisti.com/infosec/certs/

    #InfoSec #RedTeam #RedTeaming #EDR #Offsec #Metasploit

  22. New blog post!

    I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.

    Here are my thoughts on it:

    ti-kallisti.com/certs/osep.html

    #InfoSec #RedTeam #RedTeaming #EDR #Offsec #Metasploit

  23. New blog post!

    I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.

    Here are my thoughts on it:

    ti-kallisti.com/infosec/certs/

    #InfoSec #RedTeam #RedTeaming #EDR #Offsec #Metasploit

  24. New blog post!

    I recently completed the OffSec Expert Penetration Tester (OSEP) certificate.

    Here are my thoughts on it:

    ti-kallisti.com/infosec/certs/

    #InfoSec #RedTeam #RedTeaming #EDR #Offsec #Metasploit

  25. Как наказать цифрового воробья или как я проходил таск PigeonsRevenge от платформы ACLabs.pro

    Данный таск был частью 5 сезона CTF, который проходил на площадке ACLabs. Машина необычная с увлекательным сюжетом и интересными уязвимостями. Условие задачи: Борис — старый почтовый голубь. Катя, его голубка, улетела к наглому Воробью. Три дня Борис пил дешёвое пойло и строчил план мести. Теперь этот план у тебя. Помоги Борису пробраться в цифровое гнездо Воробья, украсть его аккаунт и стать рутом. Следуй за пьяными записками — там всё сказано и даже больше. Внимание, стенд будет полностью готов только по истечении обратного времени отсчета, даже если адрес появился раньше! Цепочка атаки Атакующая цепочка «PigeonsRevenge» комбинирует одну реальную критическую CVE (Webmin 1.910 — CVE-2019-15107, 9.8 CRITICAL) с набором классических техник ATT&CK : активная разведка → port knocking → эксплуатация публичного приложения → Metasploit reverse-shell → туннелирование Ligolo-ng → инъекция через переменную окружения в кастомный бинарник → обход фильтра табуляцией → закрепление с root -привилегиями.

    habr.com/ru/articles/1024360/

    #nmap #bash #docker #ssh #ghidra #cve #webmin #metasploit #privelege_escalation #pivoting

  26. Как наказать цифрового воробья или как я проходил таск PigeonsRevenge от платформы ACLabs.pro

    Данный таск был частью 5 сезона CTF, который проходил на площадке ACLabs. Машина необычная с увлекательным сюжетом и интересными уязвимостями. Условие задачи: Борис — старый почтовый голубь. Катя, его голубка, улетела к наглому Воробью. Три дня Борис пил дешёвое пойло и строчил план мести. Теперь этот план у тебя. Помоги Борису пробраться в цифровое гнездо Воробья, украсть его аккаунт и стать рутом. Следуй за пьяными записками — там всё сказано и даже больше. Внимание, стенд будет полностью готов только по истечении обратного времени отсчета, даже если адрес появился раньше! Цепочка атаки Атакующая цепочка «PigeonsRevenge» комбинирует одну реальную критическую CVE (Webmin 1.910 — CVE-2019-15107, 9.8 CRITICAL) с набором классических техник ATT&CK : активная разведка → port knocking → эксплуатация публичного приложения → Metasploit reverse-shell → туннелирование Ligolo-ng → инъекция через переменную окружения в кастомный бинарник → обход фильтра табуляцией → закрепление с root -привилегиями.

    habr.com/ru/articles/1024360/

    #nmap #bash #docker #ssh #ghidra #cve #webmin #metasploit #privelege_escalation #pivoting

  27. Как наказать цифрового воробья или как я проходил таск PigeonsRevenge от платформы ACLabs.pro

    Данный таск был частью 5 сезона CTF, который проходил на площадке ACLabs. Машина необычная с увлекательным сюжетом и интересными уязвимостями. Условие задачи: Борис — старый почтовый голубь. Катя, его голубка, улетела к наглому Воробью. Три дня Борис пил дешёвое пойло и строчил план мести. Теперь этот план у тебя. Помоги Борису пробраться в цифровое гнездо Воробья, украсть его аккаунт и стать рутом. Следуй за пьяными записками — там всё сказано и даже больше. Внимание, стенд будет полностью готов только по истечении обратного времени отсчета, даже если адрес появился раньше! Цепочка атаки Атакующая цепочка «PigeonsRevenge» комбинирует одну реальную критическую CVE (Webmin 1.910 — CVE-2019-15107, 9.8 CRITICAL) с набором классических техник ATT&CK : активная разведка → port knocking → эксплуатация публичного приложения → Metasploit reverse-shell → туннелирование Ligolo-ng → инъекция через переменную окружения в кастомный бинарник → обход фильтра табуляцией → закрепление с root -привилегиями.

    habr.com/ru/articles/1024360/

    #nmap #bash #docker #ssh #ghidra #cve #webmin #metasploit #privelege_escalation #pivoting

  28. Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit rapid7.com/blog/post/pt-metasp

  29. Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit rapid7.com/blog/post/pt-metasp

  30. Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit rapid7.com/blog/post/pt-metasp

  31. Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit rapid7.com/blog/post/pt-metasp

  32. Metasploit Framework is here with 5 new modules! Exploits for FreeScout (CVE-2026-28289) and Grav CMS (CVE-2025-50286) RCEs, plus a generic HTTP command execution module and a new Windows persistence technique. We also have a slew of bug fixes and enhancements including SOCKS proxy performance improvements #Metasploit rapid7.com/blog/post/pt-metasp

  33. The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.

    Check it out at rapid7.com/blog/post/pt-metasp

  34. The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.

    Check it out at rapid7.com/blog/post/pt-metasp

  35. The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.

    Check it out at rapid7.com/blog/post/pt-metasp

  36. The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.

    Check it out at rapid7.com/blog/post/pt-metasp

  37. The latest #Metasploit Wrapup is here! 🎉 This week brings enhanced SMB NTLM relaying for better client compatibility (including smbclient), plus new modules for RCE in Eclipse Che (CVE-2025-12548), Barracuda ESG command injection (CVE-2023-2868), and an ESC/POS printer injector.

    Check it out at rapid7.com/blog/post/pt-metasp

  38. Como o exploit define o alvo (rhost & rport)

    Quer entender como um exploit escolhe e ataca um alvo em segundos? ⚠️

    • O que acontece nesse trecho:
    - Ele setou "rhost" → o remote host (quem será atacado)
    - Ele setou "rport" → o remote port (a porta alvo)
    - Usa uma biblioteca com exploits prontos (ex: uma CVE de 2013)
    - Fluxo: pega o código do exploit → seta host e porta → verifica se o alvo está ativo → executa

    •...

    #Metasploit #exploits #cibersegurança #CVE #hacking #segurança #MorningCrypto

  39. Como o exploit define o alvo (rhost & rport)

    Quer entender como um exploit escolhe e ataca um alvo em segundos? ⚠️

    • O que acontece nesse trecho:
    - Ele setou "rhost" → o remote host (quem será atacado)
    - Ele setou "rport" → o remote port (a porta alvo)
    - Usa uma biblioteca com exploits prontos (ex: uma CVE de 2013)
    - Fluxo: pega o código do exploit → seta host e porta → verifica se o alvo está ativo → executa

    •...

    #Metasploit #exploits #cibersegurança #CVE #hacking #segurança #MorningCrypto

  40. No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!

    Read the full details: rapid7.com/blog/post/pt-metasp #Metasploit

  41. No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!

    Read the full details: rapid7.com/blog/post/pt-metasp #Metasploit

  42. No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!

    Read the full details: rapid7.com/blog/post/pt-metasp #Metasploit

  43. No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!

    Read the full details: rapid7.com/blog/post/pt-metasp #Metasploit

  44. No bad luck here! 🍀 The Metasploit weekly wrapup is live with 3 new modules: LeakIX Search, Linux RC4 payload packer, and an unauthenticated RCE for SPIP Saisies (CVE-2025-71243). Plus, check out Metasploit Pro 5.0.0!

    Read the full details: rapid7.com/blog/post/pt-metasp #Metasploit

  45. Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: rapid7.com/blog/post/pt-metasp #Metasploit

  46. Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: rapid7.com/blog/post/pt-metasp #Metasploit

  47. Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: rapid7.com/blog/post/pt-metasp #Metasploit

  48. Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: rapid7.com/blog/post/pt-metasp #Metasploit

  49. Encoder exposed! 💥 Get the details on the latest Metasploit Framework release: new encoder options for better payload control, fresh RCE exploits (Tactical RMM SSTI, MajorDoMo), and Linux RC4 Packer for in-memory execution. Read the full wrap-up: rapid7.com/blog/post/pt-metasp #Metasploit

  50. Lateral movement w Active Directory z wykorzystaniem WinRM

    Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....

    #Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm

    sekurak.pl/lateral-movement-w-

  51. Lateral movement w Active Directory z wykorzystaniem WinRM

    Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....

    #Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm

    sekurak.pl/lateral-movement-w-

  52. Lateral movement w Active Directory z wykorzystaniem WinRM

    Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....

    #Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm

    sekurak.pl/lateral-movement-w-

  53. Lateral movement w Active Directory z wykorzystaniem WinRM

    Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....

    #Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm

    sekurak.pl/lateral-movement-w-

  54. Lateral movement w Active Directory z wykorzystaniem WinRM

    Lateral movement (często tłumaczony jako ruch boczny) w środowiskach Active Directory bardzo rzadko opiera się na podatnościach w rozumieniu tych dostępnych w ramach bazy CVE. W praktyce znacznie częściej jest to konsekwencja nadużycia wbudowanych mechanizmów administracyjnych, które zostały zaprojektowane z myślą o automatyzacji i zdalnym zarządzaniu systemami z rodziny Windows....

    #Teksty #Metasploit #Mimikatz #Netsec #Poradnik #Powershell #Winrm

    sekurak.pl/lateral-movement-w-

  55. Stop reading theory without results.

    This bundle combines the Master #Hacker ebook with hands-on video walkthroughs that turn recon, #Metasploit exploitation, AV evasion, and #Python #scripting into practical skills you can deploy immediately:

    hackersarise.thinkific.com/bun
    #cybersecurity #infosec