Sylvain Heiniger
@sploutchy
infosec.exchange/@sploutchy
ID: 97077093
15-12-2009 22:33:19
169 Tweet
404 Followers
210 Following
I did the Corelan Consulting & Training Advanced Exploitation class at BruCON the last three days. Thanks ς๏гєɭคภς0๔3г ([email protected]) for the awesome teaching, my brain now needs a few days to recover!
Found an vhdx/vmdk/vhd file in a network share? Volumiser from CCob🏴 gets you covered to exfiltrate e.G. SAM/SYSTEM to compromise the system via Administrator Pass-The-Hash: github.com/CCob/Volumiser Really easy and intuitive to use 👏
We did it again with #LocalPotato! A not-so-common NTLM reflection attack allowing for arbitrary read/write. Basically EoP from user to SYSTEM. Tracked as #CVE-2023-21746 - Windows NTLM EoP Soon more details --> localpotato.com cc Antonio Cocomazzi
COM is old but gold—for attackers! 🚨 In our latest blog, Sylvain Heiniger (Sylvain Heiniger) exposes a privilege escalation vulnerability in the Google Chrome updater. Want to know how cross-session EoP still happens today? Check it out! #COM blog.compass-security.com/2024/10/com-cr…