Chaotic Eclipse

1.2K posts

Chaotic Eclipse banner
Chaotic Eclipse

Chaotic Eclipse

@ChaoticEclipse0

Katılım Haziran 2019
575 Takip Edilen4.4K Takipçiler
Chaotic Eclipse
Chaotic Eclipse@ChaoticEclipse0·
Another 0day unpatched LPE will be released soon.
English
3
3
83
6K
Grzegorz Tworek
Grzegorz Tworek@0gtweet·
Unfortunately, MoveFileEx() with MOVEFILE_DELAY_UNTIL_REBOOT flag does not replace SAM file... 🙄 Somewhat expected, but I had to check 😅
English
3
0
19
4.8K
Yarden Shafir
Yarden Shafir@yarden_shafir·
Microsoft is preparing to kill many known KASLR bypasses in the next release. Unless the calling process has debug privilege enabled, kernel addresses will be stripped from the output data for all leaking NtQuery APIs
Yarden Shafir tweet media
English
13
142
603
267.8K
IAM!ERICA
IAM!ERICA@EricaZelic·
Stuck in *medium integrity* shell with *no credentials* running in context of local admin and cannot get a desktop session. You use a UAC bypass that gives you system. CVSSv3.1 score >8. Post-privesc to system, you get DA from breach host. How do you report this?
English
8
7
7
8.5K
Longhorn
Longhorn@never_released·
@mdowd @dwizzzleMSFT I see all this (frankly) blah blah but the shipped product really does not convince.
English
1
0
2
1.1K
Chaotic Eclipse
Chaotic Eclipse@ChaoticEclipse0·
@EricaZelic Still work in progress and MSFT is working on fixing its weaknesses (SMB,REFS...). And a lot of services were enrolled (msiexec, profsvc, spoolsv, windows updates, AppX and several COM activated servers...) and yeah it's not audit only at this point.
English
1
0
2
400
IAM!ERICA
IAM!ERICA@EricaZelic·
. @dwizzzleMSFT what is this status on Redirection Guard? Does it apply only to the spooler? What Windows 10 and 11 editions come with it enabled? Or is it still in audit mode? Also, does this apply to Windows 10 as well? IDK how to tell a customer to mitigate it.
English
3
1
5
2.5K
BlueHat IL
BlueHat IL@BlueHatIL·
You’re never too young too start hacking at #BlueHatIL 🐣
BlueHat IL tweet media
English
1
3
61
7.1K
🎻 ➡️ BlueSky
🎻 ➡️ BlueSky@ericlaw·
We should probably add IPFS Gateways to the list of "Suspicious Domains" in the Google Suspicious Site Reporter extension.
🎻 ➡️ BlueSky tweet media
English
5
1
34
32.8K
Florian Roth ⚡️
Florian Roth ⚡️@cyb3rops·
I wished AV vendors would encrypt / pack their signature files
Florian Roth ⚡️ tweet mediaFlorian Roth ⚡️ tweet media
English
6
12
95
24.8K
SwiftOnSecurity
SwiftOnSecurity@SwiftOnSecurity·
When Microsoft sees errors in the event log on a default installation of Windows
SwiftOnSecurity tweet media
English
9
18
326
49.9K
Chaotic Eclipse
Chaotic Eclipse@ChaoticEclipse0·
@jonasLyk which windows version you're using ? I keep getting STATUS_BAD_NETWORK_PATH
English
1
0
0
1.1K
Jonas L
Jonas L@jonasLyk·
Allright, the following file open causes svchost to create the following file- a cached copy of the remote file, with quite restricted acl.
Jonas L tweet media
English
2
12
91
26.6K