Sylvain Heiniger

168 posts

Sylvain Heiniger

Sylvain Heiniger

@sploutchy

https://t.co/j1RauZBiTh

Suisse Katılım Aralık 2009
205 Takip Edilen422 Takipçiler
Sylvain Heiniger retweetledi
Synacktiv
Synacktiv@Synacktiv·
Oh, you didn't know? Cool kids are now relaying Kerberos over SMB 😏 Check out our latest blogpost by @hugow_vincent to discover how to perform this attack: synacktiv.com/publications/r…
English
1
144
325
31.6K
Sylvain Heiniger retweetledi
Compass Security
Compass Security@compasssecurity·
COM is old but gold—for attackers! 🚨 In our latest blog, Sylvain Heiniger (@sploutchy) exposes a privilege escalation vulnerability in the Google Chrome updater. Want to know how cross-session EoP still happens today? Check it out! #COM blog.compass-security.com/2024/10/com-cr…
Compass Security tweet media
English
0
93
194
16.3K
Andrea P
Andrea P@decoder_it·
@compasssecurity @D1iv3 Cool stuff! And first auth an be relayed with Kerberos too using @tiraniddo's marshaled target info trick, allowing SPN control via a fake DNS entry. Users can typically perform secure DNS updates in AD ⬇️
Andrea P tweet media
English
1
2
7
485
Sylvain Heiniger retweetledi
Compass Security
Compass Security@compasssecurity·
You like device code phishing? You will like Felix Aeppli’s latest research even more. He shows how to backdoor Entra ID phished accounts by adding a new sign-in method. Details and PoC here: blog.compass-security.com/2024/01/device…
Compass Security tweet media
English
0
9
14
2K
Sylvain Heiniger retweetledi
TrendAI Zero Day Initiative
Collision – Compass Security was able to execute their stack overflow attack against the Synology BC500. However, the exploit they used was previously known. They still earn $3,750 and 0.75 Master of Pwn points. #Pwn2Own
TrendAI Zero Day Initiative tweet mediaTrendAI Zero Day Initiative tweet media
English
1
10
43
11.7K
Sylvain Heiniger retweetledi
Louis Dion-Marcil
Louis Dion-Marcil@ldionmarcil·
Outlook for Windows can be tricked into displaying a fake domain, but open another one. Add a <base> tag with a fake domain + left-to-right mark (U+200E) Links in <a> tags will show the fake domain, but open the real domain. No need to buy .zip! :) Convincing #phishing #redteam
Louis Dion-Marcil tweet mediaLouis Dion-Marcil tweet media
English
13
237
811
117.2K
leandro
leandro@0xdeaddood·
What PR would you like to see added to #Impacket?
English
9
1
14
8.3K
Sylvain Heiniger retweetledi
Andrea P
Andrea P@decoder_it·
We did it again with #LocalPotato! A not-so-common NTLM reflection attack allowing for arbitrary read/write. Basically EoP from user to SYSTEM. Tracked as #CVE-2023-21746 - Windows NTLM EoP Soon more details --> localpotato.com cc @splinter_code
Andrea P tweet media
English
13
272
715
90.1K
Sylvain Heiniger retweetledi
S3cur3Th1sSh1t
S3cur3Th1sSh1t@ShitSecure·
Found an vhdx/vmdk/vhd file in a network share? Volumiser from @_EthicalChaos_ gets you covered to exfiltrate e.G. SAM/SYSTEM to compromise the system via Administrator Pass-The-Hash: github.com/CCob/Volumiser Really easy and intuitive to use 👏
English
5
103
281
0