I learned so much about Kerberos solving Rebound. It was very difficult, but such a great experience. There's Kerberoasting without auth, cross session with RemotePotato0, and abusing delegation, both constrained and RBCD! 0xdf.gitlab.io/2024/03/30/h...
HTB: Rebound
Rebound is a monster Active Directory / Kerberos box. I’ll start off with a RID-cycle attack to get a list of users, and combine AS-REP-Roasting with Kerberoasting to get an crackable hash for a servi...
0xdf.gitlab.io
#CCC #37c3 Chaos Communication Congress Streaming media streaming.media.ccc.de/37c3/ Videos archived media.ccc.de/c/37c3 Schedule fahrplan.events.ccc.de/congress/202...
37C3: Unlocked - media.ccc.de
Video Streaming Portal des Chaos Computer Clubs
media.ccc.de
Patryk Jaracz, Under the Clouds of War. UNICEF photo of the year.
Amnesiac Powershell post-exploitation framework for lateral movement in AD github.com/Leo4j/Amnesiac
ADOKit Azure DevOps Services Attack Toolkit from IBM X-Force. Whitepaper: www.ibm.com/downloads/ca... URL: github.com/xforcered/AD...
List of .NET applications signed by Microsoft that can be used to load a DLL via a .config file. Ideal for EDR/AV evasion and execution policy bypass github.com/Mr-Un1k0d3r/...
GitHub - Mr-Un1k0d3r/.NetConfigLoader: .net config loader
.net config loader. Contribute to Mr-Un1k0d3r/.NetConfigLoader development by creating an account on GitHub.
github.com