
obscuresecurity.blogspot.com
obscuresecNothing new to see here.
http://obscuresecurity.blogspot.com/
Nothing new to see here.
http://obscuresecurity.blogspot.com/
TODAY'S RATING
>1,000,000
Date Range
HIGHEST TRAFFIC ON
Monday
LOAD TIME
0.6 seconds
16x16
PAGES IN
THIS WEBSITE
19
SSL
EXTERNAL LINKS
89
SITE IP
172.217.10.129
LOAD TIME
0.578 sec
SCORE
6.2
obscuresec | obscuresecurity.blogspot.com Reviews
https://obscuresecurity.blogspot.com
Nothing new to see here.
obscuresec: February 2014
http://obscuresecurity.blogspot.com/2014_02_01_archive.html
Sunday, February 23, 2014. The $env:PATH Less Traveled: Subverting Trust with 3rd-Party Applications. What happens when a 3rd-party application writes its installation directory to the PATH? If the NTFS permissions of the directory aren't properly applied, then that software has a clear vulnerability. But what if they only recommend that YOU. Place their insecure directories in the PATH? So its not Microsoft's fault and its not the vendor's fault. Meets a feature (or flaw. Of PowerShell v3 which allows u...
obscuresec: Standard Disclaimer
http://obscuresecurity.blogspot.com/p/standard-disclaimer.html
I am opinionated and those opinions are mine and in no way represent my employer. You are welcome to disregard or disagree with me! I am not a programmer, coder or developer. I script on occasion, but often its for a strange purpose and of little value to others. PowerShell is helping me bridge the gap into learning .NET, but I will likely never be an expert. Thank you for reading and commenting. Subscribe to: Posts (Atom). Modifying MAC properties with PowerShell. View my complete profile. Creating Real...
obscuresec: Dirty PowerShell WebServer
http://obscuresecurity.blogspot.com/2014/05/dirty-powershell-webserver.html
Sunday, May 18, 2014. I was recently asked why there wasn't a PowerShell entry in this great list of web-server one-liners. Of course it is possible, but not as easy as with other scripting languages. Web-servers are dangerous in the wrong hands, but testers use them all the time (not always safely). I have seen people upload utilities like Mongoose. To accomplish serving static files, but it can be accomplished with PowerShell and the .Net httplistener class. We will need to have admin rights to grab a ...
obscuresec: Modifying MAC properties with PowerShell
http://obscuresecurity.blogspot.com/2014/05/touch.html
Monday, May 19, 2014. Modifying MAC properties with PowerShell. Laziness is the demise of Red Team engagements. Whether it is writing PsExec to a user's desktop. Utility. Meterpreter has TimeStomp. Which works on Windows and makes it easy to blend your files with files around it by modifying the MACE attributes. After a request to add the capability to PowerSploit. S Beacon. I asked Raphael. And he pointed me to a well-documented part of the Windows API. So naturally I headed over to pinvoke.net. Wow, we...
obscuresec: Recommended Links
http://obscuresecurity.blogspot.com/p/great-posts-articles-and-tutorials.html
This page is just a collection of links to great content that I can easily reference. I will try to keep it updated and hopefully others will find it useful:. Excellent tutorial by Offensive Security on the basics of using Metasploit. Series from Bernardo Damele AG on all known NT/LM hash dumping methods. Six-part series from Chris Gates on methods of getting shell through Oracle. Mubix has organized several great post-exploitation resources on Google Docs. Getting Started with PowerShell. Didier Stevens...
TOTAL PAGES IN THIS WEBSITE
19
Windows
http://www.nathanv.com/category/windows
Secure Function: Findings, musings, how-tos, and analysis. Laquo; Posts under Windows. Batch Script: Purge Reader. 29 September 2012 / Nathan V. Going along with the batch theme this one is designed to take Reader / Acrobat off of the target system. If I missed any GUIDs or you have any suggestions please feel free to email or comment here. Http:/ www.cvedetails.com/product/497/Adobe-Acrobat-Reader.html? Http:/ www.adobe.com/support/security/. Batch Script: Purge Java. 26 September 2012 / Nathan V. This ...
Security
http://www.nathanv.com/category/security
Secure Function: Findings, musings, how-tos, and analysis. Laquo; Posts under Security. It’s time to say goodbye to Bit.ly. 21 June 2016 / Nathan V. Don’t get this backwards; they’re still very much alive… but they are dead to me. Today marked the second time in the last few months I’ve emailed them to notify them that their service was being utilized to facilitate a phishing campaign. Both times now they have simply ignored me. They have nothing listed on their knowledge base about phishing. I’ve ...
Incursus Absconditus: October 2014
http://0xthem.blogspot.com/2014_10_01_archive.html
Tuesday, October 14, 2014. Self-removing PE's with Remote Thread Injection. There has been a great deal of sharing of client side techniques of late, so I thought I'd toss out a tip. A means to have a PE executable terminate and delete itself while running on a modern Windows system. The technique we will use is not new, but is one I discovered independently while tinkering with thread injection techniques a few years back. Since many people are familiar with the CreateThread. As many people are using Py...
Incursus Absconditus: Temporal Persistence with bitsadmin and schtasks
http://0xthem.blogspot.com/2014/03/t-emporal-persistence-with-and-schtasks.html
Saturday, March 8, 2014. Temporal Persistence with bitsadmin and schtasks. Leaving a Key Under the Mat -. On a recent engagement, I ran into a well-meaning individual who, after being briefed about our team's access to their network, decided to reboot compromised hosts and change user credentials in the middle of the testing. After losing multiple shells that weren't actually being detected, I decided to spend that evening after work creating a method to let myself back in. Remotely Mutable C2 Addressing.
Nathan V
http://www.nathanv.com/author/nathan-v
Secure Function: Findings, musings, how-tos, and analysis. Laquo; Posts by Nathan V. It’s time to say goodbye to Bit.ly. 21 June 2016 / Nathan V. Don’t get this backwards; they’re still very much alive… but they are dead to me. Today marked the second time in the last few months I’ve emailed them to notify them that their service was being utilized to facilitate a phishing campaign. Both times now they have simply ignored me. They have nothing listed on their knowledge base about phishing. I’ve onc...
2012 July
http://www.nathanv.com/2012/07
Secure Function: Findings, musings, how-tos, and analysis. Laquo; Archives in July, 2012. Shell Script: Use Twiter and Bing to Generate Wordlists. 18 July 2012 / Nathan V. There are some great wordlists out there for sure… but a targeted wordlist that fits with the subject of the target site/database can prove to be much more effective. Joshua Dustin. Now, on to the code;. Run it using as many keywords as you’d like to scrape off the web:. Wordlistgen.sh your keywords go here. Http:/ 7habitsofhighlyeffec...
Still Passing the Hash 15 Years Later: April 2015
http://passing-the-hash.blogspot.com/2015_04_01_archive.html
Still Passing the Hash 15 Years Later. Providing all the extra info that didn't make it into the BlackHat 2012 USA Presentation "Still Passing the Hash 15 Years Later? Using the Keys to the Kingdom to Access All Your Data" by Alva Lease 'Skip' Duckwall IV and Christopher Campbell. Sunday, April 5, 2015. No, Microsoft Hasn't "Fixed" Silver Tickets. The post is here: http:/ blog.varonis.com/microsoft-fixes-kerberos-silver-ticket-vulnerability/. What He Got Right. The author did a decent job in previous blo...
Still Passing the Hash 15 Years Later: February 2013
http://passing-the-hash.blogspot.com/2013_02_01_archive.html
Still Passing the Hash 15 Years Later. Providing all the extra info that didn't make it into the BlackHat 2012 USA Presentation "Still Passing the Hash 15 Years Later? Using the Keys to the Kingdom to Access All Your Data" by Alva Lease 'Skip' Duckwall IV and Christopher Campbell. Tuesday, February 5, 2013. The Other MS Recommendations. I'm going to ramble on a bit about the rest of the MS Recommendations from their whitepaper found here:. Remove standard users from the local admins group. Ensure adminis...
Still Passing the Hash 15 Years Later: March is (apparently) Pass-the-Hash Awareness Month!
http://passing-the-hash.blogspot.com/2014/03/march-is-apparently-pass-hash-awareness.html
Still Passing the Hash 15 Years Later. Providing all the extra info that didn't make it into the BlackHat 2012 USA Presentation "Still Passing the Hash 15 Years Later? Using the Keys to the Kingdom to Access All Your Data" by Alva Lease 'Skip' Duckwall IV and Christopher Campbell. Sunday, March 2, 2014. March is (apparently) Pass-the-Hash Awareness Month! I'm in the final process of editing it and making sure it looks proper on the blog, so I'd expect it in the next day or so. PTH Google Code Page.
TOTAL LINKS TO THIS WEBSITE
89
obscuresciencestuff.blogspot.com
Science Stuff (obscure, different, or whatever)
Science Stuff (obscure, different, or whatever). The world of science is fascinating, and new discoveries and technologies happen every day. Most of it is buried in the news and you just don't ever find out about it! Monday, August 16, 2010. So how is it, scientifically, that a 78-old man can ride a roller coaster 90 times in one day? Monday, August 16, 2010. Sunday, November 8, 2009. Baguette Dropped From Bird's Beak Shuts Down The Large Hadron Collider (Really). Sunday, November 08, 2009. The title of ...
The Obscure Scribbler
Subscribe to RSS Feed. Birds on Wire Films. Scratches, scrawls and scribbles of an absconding writer. O' Delhi, Delhi Oh! Tribulations and Consolations of surviving the city. लोग परछाईयों में जाते हैं बदल. Saturday, July 25, 2015. लोग परछाईयों में जाते हैं बदल. जागती रात है और. खामोश है दिन का. सफर हवा ले रही. आलाप. मगर धीरे से. कोइ सुन न ले. लोग परछाईयों में. जाते हैं बदल. समा जाते है. हवाओं में. कोई दिन नहीं. रात नहीं. कोई आहट नहीं. बस सरसराहट है. पत्तों की. जो. पलट कर देखा. बारिश की. धूप. प&...दे...
ObscureSecret's blog - Obscure Secret - Skyrock.com
22/07/2009 at 6:02 AM. 16/08/2011 at 3:56 AM. Je ne sais pas pourquoi,. Point de vue Drago Depuis q. Point de vue Hermione Être. Point de vue Inconnu . Subscribe to my blog! Obscure Secret est une fanfiction,. Son principe est simple, Créer et réaliser une histoire inventé de toute pièce. Comme le ferait un auteur ou un scénariste. Seulement les acteurs choisi sont des propriétés de J.K Rowling. L'histoire diffère complètement de son origine. Obscure Secret n'a pas un auteur, Mais deux. Page 1 of 6.
obscuresecureproject.wordpress.com
obscure secure project
February 23, 2016. Blog post Five, a-n review meeting with Jennifer Higgie. Our final a-n review bursary meeting took place last month with Jennifer Higgie – it was especially beneficial to for us to get feedback from Jennifer as we had not met her before in any context. Jennifer’s generosity has been invaluable for us, below is a brief overview of some of the feedback from the meeting. Image: Mary Potter, Exhibition invite from 1939. Links to previous posts. A-n review meeting with Rebecca Fortnum.
obscuresec
Monday, May 19, 2014. Modifying MAC properties with PowerShell. Laziness is the demise of Red Team engagements. Whether it is writing PsExec to a user's desktop. Utility. Meterpreter has TimeStomp. Which works on Windows and makes it easy to blend your files with files around it by modifying the MACE attributes. After a request to add the capability to PowerSploit. S Beacon. I asked Raphael. And he pointed me to a well-documented part of the Windows API. So naturally I headed over to pinvoke.net. Wow, we...
obscureservices.com
The domain obscureservices.com is for sale. To purchase, call Afternic.com at 1 781-373-6847 or 855-201-2286. Click here for more details.
OSCC
ObscureShadows (Jen) - DeviantArt
Window.devicePixelRatio*screen.width 'x' window.devicePixelRatio*screen.height) :(screen.width 'x' screen.height) ; this.removeAttribute('onclick')" class="mi". Window.devicePixelRatio*screen.width 'x' window.devicePixelRatio*screen.height) :(screen.width 'x' screen.height) ; this.removeAttribute('onclick')". Join DeviantArt for FREE. Forgot Password or Username? Artisan Crafts / Hobbyist. Deviant for 3 Years. This deviant's full pageview. Last Visit: 122 weeks ago. You can drag and drop to rearrange.
Obscureshapes
May 29, 2015. Write an awesome description for your new site here. You can edit this line in config.yml. It will appear in your document head meta (for Google search results) and in your feed.xml site description.
SOCIAL ENGAGEMENT