Nicolas Chatelain

590 posts

Nicolas Chatelain banner
Nicolas Chatelain

Nicolas Chatelain

@Nicocha30

Security researcher | Ligolo/Ligolo-ng/Chashell author

Paris Katılım Mart 2014
310 Takip Edilen415 Takipçiler
Nicolas Chatelain
Nicolas Chatelain@Nicocha30·
Introducing Ligolo-IWA! If you love Ligolo-ng but struggle with proxies, EDRs, or AppLocker policies, this is for you. Ligolo-IWA runs directly from Chromium-based browsers (Edge/Chrome) to bypass standard host restrictions and corporate filters. iwa.ligolo.ng
English
3
46
161
9.1K
Nicolas Chatelain
Nicolas Chatelain@Nicocha30·
@JohnWH79 Most likely a duplicate route. Check your routes/yaml configuration file.
English
2
0
0
19
OnTheLookout
OnTheLookout@JohnWH79·
@Nicocha30 Can you advise on why I receive "file exists" error when I try to start a tunnel with ligolo-ng?
English
1
0
0
24
Nicolas Chatelain retweetledi
Necromancer Labs
Necromancer Labs@NecromancerLabs·
There are likely Ligolo servers on the Internet that you can connect to with a Ligolo agent. 1. Ligolo has 3 JARM signatures. 2. Ligolo-MP's JARM is the same as Sliver C2. 3. We do not advise or condone connecting to potential Ligolo servers. necromancerlabs.com/research/paper…
Necromancer Labs tweet media
English
1
2
4
512
Nicolas Chatelain retweetledi
Atsika
Atsika@_atsika·
ProxyBlob is alive ! We’ve open-sourced our stealthy reverse SOCKS proxy over Azure Blob Storage that can help you operate in restricted environments 🔒 🌐 github.com/quarkslab/prox… Blog post for more details right below ⬇️
quarkslab@quarkslab

Look at those cute little blobs in your internal network. They look harmless, but how about the one carrying SOCKS? It's ProxyBlob, a reverse proxy over Azure. Check out @_atsika's article on how it came to exist after an assumed breach mission ⤵️ 👉 blog.quarkslab.com/proxyblobing-i…

English
3
45
113
9.1K
Nicolas Chatelain retweetledi
DEFCON GROUP Paris
DEFCON GROUP Paris@dcgparis·
🇬🇧 DEFCON Paris on NOV-04 🇫🇷 DEFCON Paris le 04/11 - "New cyber visualisation tool", by Adem Ali Cherif - "RedTeaming and Tunneling – Stop using Raspberry Pi!", by Nicolas Chatelain (@Nicocha30) 📍 Le Carlie, 177 rue Saint Martin, Paris 🕖 19:00 🎟️ framadate.org/T6TnZTdcihNJqh…
English
0
11
22
3.8K
Hash Miser
Hash Miser@H_Miser·
Je constate une certaine difficulté pour les étudiants à trouver une alternance, ainsi que des réductions budgétaires empêchant l’embauche de stagiaires compétents, c’est dans ma tête ? Trop d’alternant, moins de budget ? Je croyais qu’il y avait pénurie de talents :)
Français
11
4
15
4.3K
Nicolas Chatelain retweetledi
quarkslab
quarkslab@quarkslab·
Wireless hacking doesn't have to be a mess of dongles and ad-hoc code anymore. Yesterday @virtualabs and @CayreRomain from @Eurecom released WHAD, a set of open source tools, libraries and firmware to make wireless security research easier. The code repo: github.com/whad-team/whad…
quarkslab tweet media
English
1
26
60
5K
Nicolas Chatelain retweetledi
vx-underground
vx-underground@vxunderground·
How to fix the Crowdstrike thing: 1. Boot Windows into safe mode 2. Go to C:\Windows\System32\drivers\CrowdStrike 3. Delete C-00000291*.sys 4. Repeat for every host in your enterprise network including remote workers 5. If you're using BitLocker jump off a bridge
English
481
6.5K
50.3K
3.7M
Nicolas Chatelain retweetledi
HaxRob
HaxRob@haxrob·
Plans to literally "hack the planet" foiled due to 500ms of latency that Andres instinctually investigated. The latency was due how the malicious code parsed symbol tables in memory. openwall.com/lists/oss-secu…
HaxRob tweet media
English
37
694
6.3K
2.5M
Nicolas Chatelain retweetledi
Rob Fuller
Rob Fuller@mubix·
“It’s almost like people are making more money teaching hacking than actually doing it.” -- @assume_breach link.medium.com/XLQADjq6HGb ^ 100% true statement, and most don't teach good habits, they teach run and gun cowboy BS.
English
12
71
309
54.6K
Nicolas Chatelain
Nicolas Chatelain@Nicocha30·
@reybango That's a very good question. Ligolo-ng connections can only be established through the proxy, not from the agent. Even if it works like a VPN, it's not really a VPN 😉. No TUN/TAP interfaces are created on the agent.
English
0
0
1
55
Rey Bango 🇺🇦🌻
Rey Bango 🇺🇦🌻@reybango·
@Nicocha30 Thank you. I was thinking ensuring no inbound traffic from unwanted folks when the connection is established and any routing security considerations since a local adapter is being created.
English
1
0
0
42
Nicolas Chatelain
Nicolas Chatelain@Nicocha30·
@reybango Hey Rey! I don't think there are any security issues using the proxy. For authentication, using mTLS is on my Todo list. 😉
English
1
0
1
52
Rey Bango 🇺🇦🌻
Rey Bango 🇺🇦🌻@reybango·
@Nicocha30 is there any security concerns on the proxy side that should be considered when using Ligolo-ng? Also, is there a way to enable authentication of a connection from the agent to the proxy?
English
1
0
0
565
Nicolas Chatelain retweetledi
Ollie Whitehouse
Ollie Whitehouse@ollieatnowhere·
A fun little canary for you all in cyber defence to help detect breaches/data theft. QT & MP4 files can reference external urls via 'rdrf' sections. These can be URLs and thus you can get a DNS resolution and/or HTTP request on open. Have an MP4 working example in VLC...
Ollie Whitehouse tweet mediaOllie Whitehouse tweet media
English
6
38
149
58.2K