- The State of Pentesting in 2020 https://blog.scrt.ch/2020/12/28/state-of-pentesting-2020/ 20 comments netsec
Linked pages
- Download Local Administrator Password Solution (LAPS) from Official Microsoft Download Center https://www.microsoft.com/en-us/download/details.aspx?id=46899 619 comments
- Wagging the Dog: Abusing Resource-Based Constrained Delegation to Attack Active Directory | Shenanigans Labs https://shenaniganslabs.io/2019/01/28/Wagging-the-Dog.html 38 comments
- Group Managed Service Accounts Overview | Microsoft Learn https://docs.microsoft.com/en-us/windows-server/security/group-managed-service-accounts/group-managed-service-accounts-overview 18 comments
- Protected Users Security Group | Microsoft Learn https://docs.microsoft.com/en-us/windows-server/security/credentials-protection-and-management/protected-users-security-group 12 comments
- GitHub - gentilkiwi/mimikatz: A little tool to play with Windows security https://github.com/gentilkiwi/mimikatz 12 comments
- GitHub - fortra/impacket: Impacket is a collection of Python classes for working with network protocols. https://github.com/SecureAuthCorp/impacket 11 comments
- Engineering antivirus evasion (Part II) – Sec Team Blog https://blog.scrt.ch/2020/07/15/engineering-antivirus-evasion-part-ii/ 7 comments
- NTLM Relay - hackndo https://en.hackndo.com/ntlm-relay/ 5 comments
- Securing privileged access Enterprise access model | Microsoft Learn https://docs.microsoft.com/en-us/windows-server/identity/securing-privileged-access/securing-privileged-access-reference-material#ESAE_BM 4 comments
- Engineering antivirus evasion – Sec Team Blog https://blog.scrt.ch/2020/06/19/engineering-antivirus-evasion/ 3 comments
- Zerologon | Secura - Take Control of Your Digital Security https://www.secura.com/blog/zero-logon 2 comments
- GitHub - frohoff/ysoserial: A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization. https://github.com/frohoff/ysoserial 1 comment
- GitHub - BloodHoundAD/BloodHound: Six Degrees of Domain Admin https://github.com/BloodHoundAD/BloodHound 0 comments
- GitHub - SpiderLabs/Responder: Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication. https://github.com/SpiderLabs/Responder 0 comments
Related searches:
Search whole site: site:blog.scrt.ch
Search title: State of Pentesting 2020 – Sec Team Blog
See how to search.