Windows

3 posts
2024

Relay Your Heart Away: An OPSEC-Conscious Approach to 445 Takeover

Even within organizations that have achieved a mature security posture, targeted NTLM relay attacks are still incredibly effective after all …
Read more
2023

Less SmartScreen More Caffeine: Abusing ClickOnce for Trusted Code Execution

The contents of this post were written by Nick Powers (@zyn3rgy) and Steven Flores (@0xthirteen), and is a written version of the content …
Read more
2021

Proxy Windows Tooling via SOCKS

Leveraging SOCKS to proxy tools from a Windows attacker machine through a compromised host is a topic that contains some nuance and room for …
Read more