Aggregator
smbtakeover: Unbind 445/tcp on Windows via SCM interactions
smbtakeover A technique to unbind and rebind 445/tcp on Windows without loading a driver, loading a module into LSASS, or rebooting the target machine. Implemented to ease the burden of SMB-based NTLM relays while...
The post smbtakeover: Unbind 445/tcp on Windows via SCM interactions appeared first on Penetration Testing Tools.
RITA: Real Intelligence Threat Analytics
Real Intelligence Threat Analytics Real Intelligence Threat Analytics (RITA) is an open-source framework for network traffic analysis. The framework ingests Bro Logs, and currently supports the following analysis features: Beaconing Detection: Search for signs of...
The post RITA: Real Intelligence Threat Analytics appeared first on Penetration Testing Tools.
strace: a diagnostic, debugging, and instructional userspace utility for Linux
strace – the Linux syscall tracer strace is a diagnostic, debugging, and instructional userspace utility for Linux. It is used to monitor and tamper with interactions between processes and the Linux kernel, which include...
The post strace: a diagnostic, debugging, and instructional userspace utility for Linux appeared first on Penetration Testing Tools.