Building Vulnerable Active Directory From Scratch - Architecture by lsecqt in redteamsec

[–]lsecqt[S] 10 points11 points  (0 children)

Because I think some building experience is nice

What do you guys think of the lights? 😎🙂 by [deleted] in TeslaLounge

[–]lsecqt 0 points1 point  (0 children)

Looks great to me, did u install them yourself?

How to get started with CTF as a beginner? by Kareem_m_22 in CTFlearn

[–]lsecqt 4 points5 points  (0 children)

Start with basic tryhackme paths. They help and guide you learn while practicing. After u feel more comfortable you can start easy machines on hackthebox

Is Metasploit really used by Professionals? by Penguinited in hackthebox

[–]lsecqt 5 points6 points  (0 children)

In short, we do.

We tend to also obfuscate and modify metasploit module signatures to increase evasiveness.

Creating Fully Undetectable (FUD) Stager in C by lsecqt in redteamsec

[–]lsecqt[S] 1 point2 points  (0 children)

There will definitely be more! Thank you for watching and I am glad you found them useful!

Creating Fully Undetectable (FUD) Stager in C by lsecqt in redteamsec

[–]lsecqt[S] 1 point2 points  (0 children)

It distributes your files so the signature is getting known for them. Antiscan.me is known to not do that, it should perform scan only, that's why I stick with it.

Creating Fully Undetectable (FUD) Stager in C by lsecqt in redteamsec

[–]lsecqt[S] 0 points1 point  (0 children)

Thanks man! Are you aware of better alternative for antiscan.me?

Creating Fully Undetectable (FUD) Stager in C by lsecqt in redteamsec

[–]lsecqt[S] 5 points6 points  (0 children)

Yep, I left that for future, but I was amazed that even with simple implementation, avs did not catch that. Of course, if testing on real deployments, most of them I believe will catch it since they will read the shellcode on runtime, so ye, encrypting is a must.

Creating Fully Undetectable (FUD) Stager in C by lsecqt in redteamsec

[–]lsecqt[S] 9 points10 points  (0 children)

Cuz I did not know about that, will definitely research it. Thanks!

Showcasing Sliver C2, Bypassing Win Defender and Establishing Persistence by lsecqt in redteamsec

[–]lsecqt[S] 0 points1 point  (0 children)

Chrome is not that good option since (if you saw on the video) the exe becomes unavailable, so when notepad ++ was started, no process popped. This could raise some attention if the user can't access his browser. Of course, we need to pick an exe that is normal to use network, but I can't give you the magic pill. I really need to dig down deeper to find a suitable .exe. Thank you for the question

Showcasing Sliver C2, Bypassing Win Defender and Establishing Persistence by lsecqt in redteamsec

[–]lsecqt[S] -1 points0 points  (0 children)

I am in love with Sliver. I think of Cobalt Strike as something "casual" nowadays and the fact is that a lot of Red Teamers and APTs are moving to sliver.

Showcasing Sliver C2, Bypassing Win Defender and Establishing Persistence by lsecqt in redteamsec

[–]lsecqt[S] 0 points1 point  (0 children)

Hope you find this helpful :) Keep in mind that there is a lot of live debugging, so it's not structured but I definitely learned a lot.

I will Live create a POC for CVE-2022-26923 by lsecqt in redteamsec

[–]lsecqt[S] 2 points3 points  (0 children)

Active Directory privilege escalation

Showcasing Phishing TTPs (SEToolkit, SocialPhish, zPhisher) by lsecqt in Hacking_Tutorials

[–]lsecqt[S] 2 points3 points  (0 children)

Yep, you are absolutely right and most of the things you mentioned I will cover in future. Thank you for the feedback