Petar Jr. Pranic (@ipslav) 's Twitter Profile
Petar Jr. Pranic

@ipslav

Windows Detection Engineer @SentinelOne
Opinions are my own

ID: 1047051162451677187

linkhttps://ipslav.github.io calendar_today02-10-2018 09:10:25

363 Tweet

340 Followers

1,1K Following

Petar Jr. Pranic (@ipslav) 's Twitter Profile Photo

I'll do an educational talk about this tomorrow in Milan. If you don't have a blue team and/or enough maturity you don't need a red team assessment and whoever is selling a red teaming without this requirements it just reducing the value of an actual red team engagement.

Prelude (@preludeorg) 's Twitter Profile Photo

This Thursday March 9th, Mr.Un1k0d3r will be presenting "Windows Internals for Red Teams" in the Prelude community discord at 7 PM EST. Drop in, chat, and learn about Windows internals! discord.gg/fZbfdUQM4A #infosec #redteam

This Thursday March 9th, <a href="/MrUn1k0d3r/">Mr.Un1k0d3r</a> will be presenting "Windows Internals for Red Teams" in the Prelude community discord at 7 PM EST. Drop in, chat, and learn about Windows internals! discord.gg/fZbfdUQM4A #infosec #redteam
Dirk-jan (@_dirkjan) 's Twitter Profile Photo

New major roadrecon release is out! This release adds supports for: - Eligible AAD admin roles (PIM) - Scoped and custom roles - Administrative Units All now in the GUI and readable by any member user in the tenant (yes including eligible roles)😀github.com/dirkjanm/ROADt…

New major roadrecon release is out! This release adds supports for:
- Eligible AAD admin roles (PIM)
- Scoped and custom roles
- Administrative Units

All now in the GUI and readable by any member user in the tenant (yes including eligible roles)😀github.com/dirkjanm/ROADt…
LRQA Cyber Labs (@lrqa_cyber_labs) 's Twitter Profile Photo

Introducing ETWHash! ETWHash is a new method and tool by Lefteris Panos for consuming SMB events from Event Tracing for Windows (ETW) and extracting NetNTLMv2 hashes for cracking offline. labs.nettitude.com/blog/etwhash-h…

@zephrfish.yxz.red (@zephrfish) 's Twitter Profile Photo

Check out ScrapingKit by myexploit2600 and I on Lares Labs, a tool we've been working on for the past week and a half focused on picking up quick wins in windows environments, useful for both #blueteam and #redteam purposes. labs.lares.com/introducing-sc…

Paul Rascagnères (@r00tbsd) 's Twitter Profile Photo

With tlansec, we suspected a 0d and we notified MS few days ago. The infection chain was insane... Instead of a endless tweet Charlie Gardner did a wonderful graphic. 2/4

With <a href="/tlansec/">tlansec</a>, we suspected a 0d and we notified MS few days ago. The infection chain was insane... Instead of a endless tweet <a href="/zcracga/">Charlie Gardner</a> did a wonderful graphic.
2/4
CODE WHITE GmbH (@codewhitesec) 's Twitter Profile Photo

Ever wondered how to pull a Houdini on #auditd and let linux events vanish into thin air? Dive into our latest blog post by Tobias Neitzel and meet the magic wands ^H^H^H PoCs 'daphne' & 'apollon' 😎 code-white.com/blog/2023-08-b…

Cyber Saiyan | RomHack Conference, Training, Camp (@cybersaiyanit) 's Twitter Profile Photo

#RomHackTraining started this morning Dirk-jan Mollema (Azure AD Security) and Silvio Cesare (Code review) teaching our studends right now 🔥🔥🔥

#RomHackTraining started this morning

Dirk-jan Mollema (Azure AD Security) and Silvio Cesare (Code review) teaching our studends right now 🔥🔥🔥
Diego Capriotti (@naksyn) 's Twitter Profile Photo

Here's Process Stomping injection and how you can use it in a Mockingjay-ish way to load a Beacon on a exe's RWX section using sRDI. Check it out! Blog: naksyn.com/edr%20evasion/… Tool: github.com/naksyn/Process… Thanks to hasherezade and monoxgas for their awesome work

Mehmet Ergene (@cyb3rmonk) 's Twitter Profile Photo

🎁 GIVEAWAY TIME! 🎁 - I'm giving away 2 seats for my brand new "Hands-On Kusto Query Language (KQL) for Security Analysts" course! Please follow Blu Raven , Comment, and Repost to participate. 👉 academy.bluraven.io/hands-on-kusto… Two random winners will be announced on 5 December

klez (@klezvirus) 's Twitter Profile Photo

6 months before Porchetta Industries's events unfolded, I paused updating my FOSS tools, questioning their value. To rediscover this and shape future developments, I've opened a private server for ppl to share ideas or even just connect. Interested? Join! discord.gg/u2AZcuGr