Development Posted on January 28, 2013 (October 19, 2022) Cobalt Strike Updates: Host Labels, CVE-2013-0422, and VNC Cobalt Strike 01.28.13 is now available. I spent this month teaching, red teaming, and writing a lot of code. Let’s jump into the highlights: 1. Read More
Development Posted on January 2, 2013 (September 26, 2022) Fresh Paint for the Java Applet Attack Java is a popular vector for penetration testers and those who penetrate networks without an invitation. An attacker creates a website to host a Java Read More
Announcements, Development Posted on November 26, 2012 (October 19, 2022) Cobalt Strike Update – 26 Nov 12 Another awesome Cobalt Strike update is available. This update is a grab bag of changes with the main theme being your requests. First, the spear phishing Read More
Development Posted on September 5, 2012 (September 26, 2022) Covert VPN – Layer 2 Pivoting for Cobalt Strike Currently, I’m debating a class of social engineering “packages” to force SMB requests against an attacker controlled system. Ideas include packages to generate LNK files, Read More