The Land of Pleasant Living
Joined August 2017
Replying to @HackingLZ
2
GIF
Who's heading to @BSidesCharm April 29th/30th?
1
2
Replying to @_xpn_
1
1
GIF
Silent strokes of code, In the digital night's shade, Secrets now unveiled. - ChatGPT
2
12
With a # of signed process dump utilities out there, would MSFT dev shops consider building in logic to prohibit LSASS dumping in such tools? Sure, it does not solve the problem class, but it does introduce a layer of deterrence for the lolbin attack aspect. Maybe...
1
6
GIF
#lolbin #lolbas Yet another signed process dump tool [from .NET Diagnostic Tools] -> dotnet-dump.exe collect -p <lsass pid>
5
54
245
Show this thread
Replying to @Bandrel @EricaZelic
1
1
GIF
1
1
5
GIF
Wow, thank you!
3
GIF
*LOLBAS from the godfather @Oddvarmoe
Got asked yesterday talk about what specific contributions I had to the @MITREattack over the years. Here is the list for those that are interested: attack.mitre.org/techniques/… (oddvar.moe/2018/03/21/persis…) attack.mitre.org/techniques/… (oddvar.moe/2018/01/14/puttin… & oddvar.moe/2018/04/11/puttin…) 1/2
Show this thread
2
10
GIF
Replying to @ScoubiMtl
GIF
My thoughts exactly, Event Viewer, my thoughts exactly...
2
3
32