Krzysztof Marciniak

248 posts

Krzysztof Marciniak banner
Krzysztof Marciniak

Krzysztof Marciniak

@__0kami

Security Consultant interested in Reverse Engineering, Binary Exploitation and much more. Co-founder of the Poznań Security Meetup. Coffee++

เข้าร่วม Ağustos 2016
234 กำลังติดตาม94 ผู้ติดตาม
Krzysztof Marciniak รีทวีตแล้ว
Alex Plaskett
Alex Plaskett@alexjplaskett·
🔥 Like Windows Kernel exploitation? Your in luck! 10 items of Windows kernel exploit research from 2020/2021 🧵
Alex Plaskett tweet media
English
4
130
409
0
Krzysztof Marciniak รีทวีตแล้ว
b1ack0wl
b1ack0wl@b1ack0wl·
I accidentally found a 0day within the latest firmware (v6_211111) for the TP-Link WR940N this afternoon and was able to dev out a quick exploit. ♥️
English
17
140
861
0
Krzysztof Marciniak รีทวีตแล้ว
Cube0x0
Cube0x0@cube0x0·
When you spend 2-months of your private time writing a full-featured C2 framework including C++ GUI, Backend, and a C++ PIC agent with custom functions only to end up clueless about what to do with it
Cube0x0 tweet media
English
64
154
1.1K
0
Krzysztof Marciniak รีทวีตแล้ว
Stephan Berger
Stephan Berger@malmoeb·
1/ In one ransomware case, the attackers started an EXE file that dropped the vulnerable GIGABYTE driver to C:\Windows\System\gdrv.sys. The TA used the vulnerable driver to load a malicious driver as a kernel driver, who hunted and killed Symantec processes. 🧵 #CyberSecurity
Stephan Berger tweet media
English
19
252
706
0
Krzysztof Marciniak รีทวีตแล้ว
Nasreddine Bencherchali
Nasreddine Bencherchali@nas_bench·
A new Sigma rule to detect this new UAC bypass technique and a generic one to detect DLL side loading were added to the public repo. LINK - github.com/SigmaHQ/sigma/…
Nasreddine Bencherchali tweet mediaNasreddine Bencherchali tweet media
English
1
43
95
0
Krzysztof Marciniak รีทวีตแล้ว
Stolas
Stolas@binpwn·
Idk, but the happiness when I see I have code exec is so much greater then when I pop calc.
Stolas tweet media
English
2
6
29
0
Krzysztof Marciniak รีทวีตแล้ว
MDSec
MDSec@MDSecLabs·
In part 2 of the How I Met Your Beacon series, we look at some strategies for detecting Cobalt Strike mdsec.co.uk/2022/07/part-2… by @domchell
MDSec tweet media
English
3
125
296
0
Krzysztof Marciniak รีทวีตแล้ว
Doug Bienstock
Doug Bienstock@doughsec·
🎉 This is a huge feature all orgs should be using. All of my recent M365 IRs (BEC, UNC and APT) have started with the TA registering the first MFA for a dormant 😴 account. #dfir #microsoft365
Merill Fernando@merill

A neat capability you unlock with combined registration is that you can now use conditinal access policies to control access to this page. For example you can limit MFA config to just trusted devices and locations or block access from countries where you don't have users.

English
1
40
131
0
Krzysztof Marciniak รีทวีตแล้ว
Tom Stokes
Tom Stokes@tomstokes·
Close-up of the edge of a 35mm film print. Every last bit of space is used for audio data: Left: Sony Dynamic Digital Sound (SDDS) Between sprocket holes: Dolby Digital Waveform pairs on the right: Analog optical sound Right dashed lines: DTS time codes
Tom Stokes tweet media
English
21
260
1.2K
0
Krzysztof Marciniak รีทวีตแล้ว
diversenok
diversenok@diversenok_zero·
Welcome the new version of Token Universe - an advanced tool for experimenting with Windows security mechanisms! 🎉🌟 It supports viewing, creating, impersonating, and modifying access tokens, spawning processes, and much more. github.com/diversenok/Tok…
English
3
156
459
0
Krzysztof Marciniak รีทวีตแล้ว
Azeria
Azeria@Fox0x01·
I just found my first ever tweet (2015) and I’m not disappointed.
Azeria tweet media
English
10
11
289
0
Krzysztof Marciniak รีทวีตแล้ว
Marco Grassi
Marco Grassi@marcograss·
#over-the-air-baseband-exploit-gaining-remote-code-execution-on-g-smartphones-23199" target="_blank" rel="nofollow noopener">blackhat.com/us-21/briefing… me and @0xKira233 at @BlackHatEvents - @keen_lab
Marco Grassi tweet media
English
7
38
239
0
Krzysztof Marciniak รีทวีตแล้ว
vessial
vessial@vessial·
triggered Qualcomm QMI to baseband heap overflow vulnerability on my mi9 pro 5G based on checkpoint reported CVE-2020-11292
vessial tweet mediavessial tweet mediavessial tweet mediavessial tweet media
Zhejiang, People's Republic of China 🇨🇳 English
6
52
202
0
Krzysztof Marciniak รีทวีตแล้ว
Denis Skvortcov
Denis Skvortcov@Denis_Skvortcov·
I’ve written my first blog post - write-up for CVE-2021-23874! How to enumerate COM-objects attack surface, explore implemented functionality and exploit it the-deniss.github.io/posts/2021/05/…
English
8
155
346
0