Astra Kernel :verified: · @AstraKernel
895 followers · 942 posts · Server infosec.exchange

✨ Cheatsheets for Pentesting

πŸ‘‰ A collection of snippets of codes and commands to make your life easier!

github.com/Kitsun3Sec/Pentest-

#infosec #pentesters #redteaming #redteamtips #networksecurity

Last updated 2 years ago

Astra Kernel :verified: · @AstraKernel
866 followers · 912 posts · Server infosec.exchange

πŸͺ² Bypassing OGNL sandboxes for fun and charities

πŸ‘‰ OGNL injections led to some serious remote code execution (RCE) vulnerabilities

github.blog/2023-01-27-bypassi

#infosec #bugbountytips #redteamtips #pentesters

Last updated 2 years ago

Ready your beacons, red teamers!

Execute unmanaged Windows executables in CobaltStrike Beacons. Not just for .Net any longer.

github.com/Octoberfest7/Inline

#pentesting #redteam #redteamtips

Last updated 2 years ago

Astra Kernel :verified: · @AstraKernel
825 followers · 857 posts · Server infosec.exchange
Astra Kernel :verified: · @AstraKernel
818 followers · 848 posts · Server infosec.exchange

Red Team Maturity Model

A standardized, community-informed Capability Maturity Model to measure, report on, and plan for internal Red Team maturity

redteammaturity.com/

#redteam #redteamtips

Last updated 2 years ago

Astra Kernel :verified: · @AstraKernel
780 followers · 811 posts · Server infosec.exchange

πŸ–₯️ Kerbrute tool

πŸ‘‰ Enumerate valid AD user accounts that use Kerberos pre-authentication

πŸ‘‰ Password bruteforce,username enumeration,password spray

GitHub repo:
github.com/ropnop/kerbrute

Detailed guide:
hackingarticles.in/a-detailed-

#kerberos #pentesting #redteaming #redteamtips #kali #kalilinux #infosec

Last updated 2 years ago

Astra Kernel :verified: · @AstraKernel
750 followers · 775 posts · Server infosec.exchange

✨ PowerShell script that weaponizes Putty to do SSH bruteforcing

πŸ‘‰ A wrapper script which uses PuTTY clients (either putty.exe or plink.exe) to perform SSH login bruteforce attacks

github.com/InfosecMatter/SSH-P

#infosec #redteam #pentesting #redteamtips #pentesters

Last updated 2 years ago

Astra Kernel :verified: · @AstraKernel
730 followers · 763 posts · Server infosec.exchange
Astra Kernel :verified: · @AstraKernel
697 followers · 737 posts · Server infosec.exchange

✨The Journey to Becoming an OSCP

πŸ—’οΈCore Skill Areas
πŸ‘‰ Operating Systems
πŸ‘‰ Networking
πŸ‘‰ Web
πŸ‘‰ Programming
benheater.com/journey-to-oscp/

#oscp #passingoscp #OSCPPrep #offsec #infosec #cybersecurity #pentesting #redteamtips #bugbountytips

Last updated 2 years ago

Astra Kernel :verified: · @AstraKernel
673 followers · 709 posts · Server infosec.exchange

Spice up your persistence: loading PHP extensions from memory
adepts.of0x.cc/dlopen-from-mem

πŸ‘‰ Question to , how you will detect or prevent this from happening?

#blueteam #redteamtips #redteam #pentesting #infosec #php #websec #persistence

Last updated 2 years ago

Astra Kernel :verified: · @AstraKernel
604 followers · 637 posts · Server infosec.exchange

✨ Avoiding Detection with Shellcode Mutator

▢️ Mutates exploit source code without affecting its functionality, changing its signature and making it harder to reliably detect as malicious

Repository:
github.com/nettitude/Shellcode

Article:
labs.nettitude.com/blog/shellc

#shellcode #redteaming #pentesters #redteamtips #infosec #exploitation #binaryexploitation

Last updated 2 years ago

Astra Kernel :verified: · @AstraKernel
598 followers · 624 posts · Server infosec.exchange
Astra Kernel :verified: · @AstraKernel
577 followers · 588 posts · Server infosec.exchange
Astra Kernel :verified: · @AstraKernel
535 followers · 566 posts · Server infosec.exchange
Astra Kernel :verified: · @AstraKernel
451 followers · 501 posts · Server infosec.exchange
Ollie Whitehouse · @ollie_whitehouse
464 followers · 62 posts · Server infosec.exchange

πŸŽ„ornaments for favourite phishing victim this year

#redteamtips

Last updated 2 years ago

Astra Kernel :verified: · @AstraKernel
229 followers · 332 posts · Server infosec.exchange

15 Ways to Bypass the PowerShell Execution Policy -without having local administrator rights on the system

▢️ By default, PowerShell prevents execution of PowerShell scripts

▢️ This can be a hurdle for , sysadmins
netspi.com/blog/technical/netw

#pentesters #infosec #redteamtips

Last updated 2 years ago

Red Team lab automation:

Setting up a windows machine for practicing - Using Packer, Terraform, and Ansible

pentestpartners.com/security-b

#pentesting #redteam #redteamtips #pentesterslab

Last updated 2 years ago

Red Team lab automation:

Setting up a windows machine for practicing - Using Packer, Terraform, and Ansible

pentestpartners.com/security-b

#pentesting #redteam #redteamtips #pentesterslab

Last updated 2 years ago