Hey @TenableSecurity can you fix this UI please?
It would be good to see the full name. It is horrible using the search and then hovering the mouse over a load of options to try and find the right one.
Consider output such as "systeminfo" to suggest relevant standards
Been researching how to silently freeze Windows processes to hijack them during red team ops. Target apps like Teams, Slack, Outlookβpause them without breaking UI. Useful for stealthy social engineering.
Write-up here:
π kreep.in/friendlyfire-bof-seβ¦
π» github.com/ibaiC/FriendlyFirβ¦
Been researching how to silently freeze Windows processes to hijack them during red team ops. Target apps like Teams, Slack, Outlookβpause them without breaking UI. Useful for stealthy social engineering.
Write-up here:
π kreep.in/friendlyfire-bof-seβ¦
π» github.com/ibaiC/FriendlyFirβ¦
A toolkit for gaining stealth during a red team engagement by @kreepsec.
An interesting use case where you pause certain threads, as the example shows with MS Teams, which allows you to send messages even while the user thinks teams is open and working.
kreepblog.fly.dev/friendlyfiβ¦
Delighted to discover a Cyber Security conference in Glasgow on Sat 26th of April being run by @Hack_Thursday.
Tickets and agenda information here:
schedule.hackglasgow.live/
For the neurodiverse the venue looks pretty brilliant.
A) it is located under the famous Glasgow Central bridge (easy to find)
B) Sure the google maps image is dark and awful but venue website has a brilliant bright tour inside and all around it.
tours.headbox.com/tour/camm-β¦
Thought experiment:
A tool called "timechains" which lets you RDP onto a server existing in the year 2010. It will run continuously with minimum down time for patching etc until it was retired in 2020.
What are you doing through your timechains server?
Customer called up to say "Probably the best pentest we have ever seen" regarding a report I delivered recently.
Nice to hear but I think it makes me the Carlsberg of pentesting.
The @McDonaldsUK lunch I ordered versus the lunch that was in the bag. I have supplied my own hotdog roll.
Missing nuggets and two entire burgers.
I mean. That's daylight robbery.