文章预览
内网渗透 BloodHoundOperator:PowerShell版BloodHound客户端 https://github.com/SadProcessor/BloodHoundOperator https://posts.specterops.io/bloodhound-operator-dog-whispering-reloaded-156020b7c5e9 终端对抗 如何设计Guardrail载荷执行护栏 https://trustedsec.com/blog/execution-guardrails-no-one-likes-unintentional-exposure BinarySpy:基于函数覆写的PE感染工具 https://github.com/yj94/BinarySpy BinHol:支持函数覆写/入口函数/TLS注入的PE感染工具 https://github.com/timwhitez/BinHol white_patch_detect:基于GS寄存器访问的PE感染通杀检测 https://github.com/huoji120/white_patch_detect OST-C2-Spec:开源C2通讯数据结构标准 https://github.com/rasta-mouse/OST-C2-Spec Nimplant:基于Nim语言开发的轻量级开源C2 https://github.com/chvancooten/NimPlant https://github.com/chvancooten/conferences/blob/main/2024-08%20-%20Nimplant%20%40%20Black%20Hat%20Arsenal%202024%2FNimplant-BHUS24-Arsenal.pdf OST工具集Stage1木马升级
………………………………