Analysis of APT34 Leaked Tools - Jason
Technical analysis of APT34's leaked Jason tool, fixing bugs for Exchange account brute-force attacks, with comparisons to open-source tools.
Read Analysis of APT34 Leaked Tools - JasonStay updated with the newest cybersecurity articles and insights.
Technical analysis of APT34's leaked Jason tool, fixing bugs for Exchange account brute-force attacks, with comparisons to open-source tools.
Read Analysis of APT34 Leaked Tools - JasonLearn how to use Pass the Hash with Remote Desktop in Restricted Admin Mode for penetration testing. Includes setup, mimikatz, and FreeRDP methods.
Read Penetration Techniques - Pass the Hash with Remote Desktop (Restricted Admin Mode)Learn to implement Zimbra SOAP API email export with filters and folder sharing. Includes code examples for automation and advanced configurations.
Read Zimbra SOAP API Development Guide 4 - Email Export and Folder SharingTechnical analysis of War3 map vulnerability via JASS scripting, exploit steps, and defense methods. Learn how modified maps execute malicious code.
Read Analysis Introduction of War3 Map "Vulnerability"Learn to access Exchange resources using SOAP XML messages with hash authentication. Includes Python code for email and attachment retrieval via EWS.
Read Exchange Web Service (EWS) Development Guide 2 – SOAP XML MessageLearn Windows shellcode exploitation in stack overflow scenarios. Covers buffer overflow principles, shellcode optimization, and practical exploitation techniques for security analysis.
Read Windows Shellcode Study Notes: Exploitation and Optimization of Shellcode in Stack OverflowLearn how to exploit Assembly.Load for loading .NET assemblies from memory without disk writes, enhancing stealth in penetration testing.
Read Analysis of Exploitation Techniques for Loading .NET Assemblies from Memory (Assembly.Load)Learn how to use hash to log into Exchange Web Service (EWS) with penetration techniques, including decryption methods and open-source tools.
Read Penetration Techniques - Pass the Hash with Exchange Web ServiceLearn CAT file digital signature techniques, Authenticode methods, and how to prevent file tampering in Windows systems with step-by-step guides.
Read CAT File Digital Signature Usage TechniquesLearn 3 advanced techniques to exploit simulated trusted directories for UAC bypass, Autoruns evasion, and ShimCache deception, with defensive tips.
Read Expansion of Techniques for Exploiting Simulated Trusted DirectoriesLearn to extend LaZagne with a custom Python script to export passwords from 360 Speed Browser, including bug fixes and EXE conversion steps.
Read Custom script development in the local password viewing tool LaZagneLearn methods for brute-forcing domain user passwords via LDAP, including attack techniques, password spraying, and detection strategies to secure Active Directory.
Read Penetration Basics - Brute-Forcing Domain User Passwords via LDAP Protocol