dfirfpi (@dfirfpi) 's Twitter Profile
dfirfpi

@dfirfpi

ID: 979294933

linkhttp://blog.digital-forensics.it calendar_today29-11-2012 22:32:01

2,2K Tweet

1,1K Followers

439 Following

πŸ₯πŸ³οΈβ€πŸŒˆ Benjamin Delpy (@gentilkiwi) 's Twitter Profile Photo

Don't you think #mimikatz 3 is more sexy with #kekeo inside? Still compatible with Windows XP, Without custom compiler this time (VS2019+ Community+) Without commercial ASN1 library

Don't you think #mimikatz 3 is more sexy with #kekeo inside?

Still compatible with Windows XP,
Without custom compiler this time (VS2019+ Community+)
Without commercial ASN1 library
mr.d0x (@mrd0x) 's Twitter Profile Photo

Procdump works against Defender with a simple rename. It quarantines the generated .dmp file but you have a few seconds to make a copy of it before it's removed. I've seen other security solutions that do this, try to copy the file quickly before it's removed.

Procdump works against Defender with a simple rename. It quarantines the generated .dmp file but you have a few seconds to make a copy of it before it's removed.

I've seen other security solutions that do this, try to copy the file quickly before it's removed.
Pentest Laboratories (@pentestlabltd) 's Twitter Profile Photo

πŸ“’ New Article Released! πŸ“ Domain Escalation - ShadowCoerce pentestlaboratories.com/2022/01/11/sha… #pentestlaboratories #redteam #redteaming

Dr. Nestori Syynimaa (@drazuread) 's Twitter Profile Photo

New #AADInternals version and related blog post (with multicolor arrows) out now! "Stealing and faking Azure AD device identities": o365blog.com/post/deviceide… Credits to πŸ₯πŸ³οΈβ€πŸŒˆ Benjamin Delpy/#Mimikatz! #infosec #redteam #blueteam

New #AADInternals version and related blog post (with multicolor arrows) out now!

"Stealing and faking Azure AD device identities":
o365blog.com/post/deviceide…

Credits to <a href="/gentilkiwi/">πŸ₯πŸ³οΈβ€πŸŒˆ Benjamin Delpy</a>/#Mimikatz! 

#infosec #redteam #blueteam
Malwrologist (@dissectmalware) 's Twitter Profile Photo

Puzzled why a yara rule did or didn't match? Let me introduce yaradbg.dev, a web-based #yara #debugger! With #YaraDbg, you can see the: 1⃣ evaluation steps 2⃣ matched strings 3⃣ relationship among the rules

payloadartist (@payloadartist) 's Twitter Profile Photo

Why you should never ever ever use pixelation as a redaction technique πŸ™ˆ github.com/bishopfox/unre… #infosec #cybersecurity #dataprivacy

Grzegorz Tworek (@0gtweet) 's Twitter Profile Photo

"write.exe" is just ShellExecute() to wordpad.exe. And ShellExecute() reads HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths before reading HKLM. Which means, you can use "write" to launch anything if you create "wordpad.exe" subkey. And it explains why I love Windows.πŸ™ƒ

SANS Institute, EMEA (@sansemea) 's Twitter Profile Photo

Coming πŸ”œ: #SANS πŸ‡ͺπŸ‡Έ Madrid, March 2023 πŸ”¦ #SANS In-Person Course Spotlight #FOR508: πŸ—£οΈdfirfpi #FOR509: πŸ—£οΈKorstiaan Stam #ICS410: πŸ—£οΈ Justin Searle βž• Search For More Courses: sans.org/u/1oiE #SANSTraining #EMEA #CyberSecurityTraining

Coming πŸ”œ:  #SANS πŸ‡ͺπŸ‡Έ Madrid, March 2023 

πŸ”¦ #SANS In-Person Course Spotlight

#FOR508: πŸ—£οΈ<a href="/dfirfpi/">dfirfpi</a>
#FOR509: πŸ—£οΈKorstiaan Stam
#ICS410: πŸ—£οΈ <a href="/meeas/">Justin Searle</a>

βž• Search For More Courses: sans.org/u/1oiE

#SANSTraining #EMEA
#CyberSecurityTraining
SANS Offensive Operations (@sansoffensive) 's Twitter Profile Photo

The SANS #RansomwareSummit is open for registration! Join Ryan "Chaps" Chapman Live Online as we bring together #Cybersecurity professionals for in-depth talks focused on #Ransomware prevention, detection, response, and recovery. ✍️ Register For Free: sans.org/u/1p0B

The SANS #RansomwareSummit is open for registration! 

Join <a href="/rj_chap/">Ryan "Chaps" Chapman</a> Live Online as we bring together #Cybersecurity professionals for in-depth talks focused on #Ransomware prevention, detection, response, and recovery. 

✍️ Register For Free: sans.org/u/1p0B
Jake Williams (@malwarejake) 's Twitter Profile Photo

If you're starting out in security and find the breadth of stuff you "need to know" daunting, I want to give you some perspective: 1. The field has broadened - dramatically. The "baseline knowledge" grows every year. Anyone saying otherwise is lying or uninformed. 1/