_Omfg0rz's profile picture.

zOmfg0rz

@_Omfg0rz

zOmfg0rz reposted

Watching artists on the timeline share their work, struggling, succeeding, trying harder, experimenting, improving, uplifting each other, and most importantly, not giving up - is so inspiring and contagious. Now, even when I'm creating alone, I'm thinking of all of you 💭


zOmfg0rz reposted

[thread 🧵] Kerberos basics & (ab)use of Certificates within Active Directory (i.e. AD CS and PKINIT) - Kerberos 101 - Pass-the-Certificate - UnPAC-the-Hash - Shadow Credentials - AD CS escalation (ESC1 to ESC8) (Links and credits at the end)

_nwodtuhs's tweet image. [thread 🧵] Kerberos basics & (ab)use of Certificates within Active Directory (i.e. AD CS and PKINIT)

- Kerberos 101
- Pass-the-Certificate
- UnPAC-the-Hash
- Shadow Credentials
- AD CS escalation (ESC1 to ESC8)

(Links and credits at the end)

zOmfg0rz reposted

🧠 Mental models are useful for developing solutions and stimulating thinking. In this post, I discuss some personal mental models I've found useful for offensive capability R&D, which can also generalize to understanding opponent processes in InfoSec. jackson-t.ca/operational-me…


zOmfg0rz reposted

One year ago, we launched the Atlas of Surveillance. It’s the largest public database of known police surveillance technologies that have been used across the country. Check it out: atlasofsurveillance.org


zOmfg0rz reposted

Threat Hunting, A Methodology: 1) Grab a PCAP anywhere on your network 2) WTF is that? 3) That can't be right 4) Who would do that? 5) It's the dumbest thing 6) Where is this asshole program sending this traffic? 7) It's your core business app 8) It's working as intended Repeat


zOmfg0rz reposted

What is half of 99?

49.5 %56.5
92 %43.5

400 vote · Final results


zOmfg0rz reposted

#infosec memes threads let's go I need some for a talk

rag_sec's tweet image. #infosec memes threads let's go I need some for a talk

zOmfg0rz reposted

2,018 Intel Shooting Star drones flying in formation acting as a 3D display.


zOmfg0rz reposted

Ever wondered what lies beneath that cool looking chip on your bank card? What does it do? Why is it there? Well here's a little pointless thread that delves into the magic using my @monzo card as an example

dcuthbert's tweet image. Ever wondered what lies beneath that cool looking chip on your bank card? What does it do? Why is it there?
Well here's a little pointless thread that delves into the magic using my @monzo card as an example

zOmfg0rz reposted

Having a breakout exercise and direct drive access is forbidden? Perhaps try these too: \\localhost\d$ \\127.0.0.1\d$ file:\\127.0.0.1\d$ \\--1.ipv6-literal.net\d$ \\0--1.ipv6-literal.net\d$ \\--0-1.ipv6-literal.net\d$ file://--0-1.ipv6-literal.net\d$


zOmfg0rz reposted

Linux for Pentester: APT Privilege Escalation Exploiting Sudo rights: Method -I sudo apt-get update -o APT::Update::Pre-Invoke::= /bin/bash

wugeej's tweet image. Linux for Pentester: APT Privilege Escalation

Exploiting Sudo rights: Method -I

sudo apt-get update -o APT::Update::Pre-Invoke::= /bin/bash

zOmfg0rz reposted

Life lessons for us here. No matter what never give in. Be this little boy, who refused to give up. Be his friends who encouraged him to keep going. Persevere with your challenges. You can do this.


zOmfg0rz reposted

My friend shared this site with me and I swear I'm about to blow a whole paycheck. bootlegtees.bigcartel.com

0xdade's tweet image. My friend shared this site with me and I swear I'm about to blow a whole paycheck. bootlegtees.bigcartel.com
0xdade's tweet image. My friend shared this site with me and I swear I'm about to blow a whole paycheck. bootlegtees.bigcartel.com
0xdade's tweet image. My friend shared this site with me and I swear I'm about to blow a whole paycheck. bootlegtees.bigcartel.com
0xdade's tweet image. My friend shared this site with me and I swear I'm about to blow a whole paycheck. bootlegtees.bigcartel.com

zOmfg0rz reposted

It's eating memory. What do I do?


zOmfg0rz reposted

daily struggles of an osint researcher

dutch_osintguy's tweet image. daily struggles of an osint researcher

zOmfg0rz reposted

The real reason to do bug hunting is to give you motivation to learn boring stuff. When was the last time you read an IPv6 for BSD reference manual with desperate enthusiasm? What if it meant you could hack the iPhone? XD


zOmfg0rz reposted

As a follow up to our container escape post, we're also releasing a 0day Vim escape exploit (below): <esc>:q!


zOmfg0rz reposted

PoC||GTFO 0x19 is out! It's a PDF, a ZIP, and an HTML page: If you drop it on itself in a browser, it can give you a PDF viewer, a video and a PNG explaining the whole file structure. All these files have the same MD5.

angealbertini's tweet image. PoC||GTFO 0x19 is out!
It&apos;s a PDF, a ZIP, and an HTML page:
If you drop it on itself in a browser,
it can give you a PDF viewer, a video
and a PNG explaining the whole file structure.
All these files have the same MD5.

zOmfg0rz reposted

Does this bring joy?

SwiftOnSecurity's tweet image. Does this bring joy?

Loading...

Something went wrong.


Something went wrong.