Skip to content

Severins kleine Cyber Seite

Für ein Phishing Mail ist man nie zu alt!

  • Discovery
  • About Me
  • Impressum

Author: Severin Winkler

Pyramid – A Tool To Help Operate In EDRs’ Blind Spots

On December 12, 2022 By Severin Winkler In Gefundenes

Pyramid is a set of Python scripts and module dependencies that can be used to evade EDRs. The main purpose of the tool is to perform offensive tasks by leveraging some Python evasion properties and …

Continue reading

Monitor hybrid security using Microsoft Defender for Cloud and Microsoft Sentinel

On December 12, 2022 By Severin Winkler In Gefundenes

This reference architecture illustrates how to use Microsoft Defender for Cloud and Microsoft Sentinel to monitor the security configuration and telemetry of on-premises and Azure operating system workloads. This includes Azure Stack. Download a Visio …

Continue reading

MFASweep

On December 12, 2022 By Severin Winkler In Gefundenes

MFASweep is a PowerShell script that attempts to log in to various Microsoft services using a provided set of credentials and will attempt to identify if MFA is enabled. https://github.com/dafthack/MFASweep

Continue reading

Florian Roth ⚡

On November 4, 2022 By Severin Winkler In Gefundenes

ORKL Search Engine for Threat Intelligence Reports by @RobertHaist https://t.co/RDqh7l4Kl3 https://twitter.com/cyb3rops/status/1588189837995147265

Continue reading

Active Directory

On October 24, 2022 By Severin Winkler In Gefundenes

Attacking & Securing Active Directory Table of Contents https://rmusser.net/docs/Active_Directory.html

Continue reading

Blocking ISO mounting

On August 5, 2022 By Severin Winkler In Gefundenes

Recently I’ve been hearing about malware mounting ISOs as a method of bypassing AV and EDR. https://malicious.link/post/2022/blocking-iso-mounting/

Continue reading

AWS Security Maturity Model

On May 22, 2022 By Severin Winkler In Gefundenes

AWS Security Maturity Model https://maturitymodel.security.aws.dev/en/model/

Continue reading

Sysmon Tools

On March 17, 2022 By Severin Winkler In Gefundenes

Sysmon View helps in tracking and visualizing Sysmon logs by logically grouping and correlating the various Sysmon events together, using existing events data, such as executables names, session GUIDs, event creation time, etc., the tool …

Continue reading

Secrets of Successful Security Programs – Part 1

On March 7, 2022 By Severin Winkler In Gefundenes

If you just do the first then the success that those improvements bring taper off or are a just a patch-work of bright spots amid a back drop of issues and instability. If you just …

Continue reading

Blockchain + SSI = ID?

On October 29, 2021 By Severin Winkler In Gefundenes

Der aktuelle Trend proklamiert Self-Sovereign-Identities (SSI) auf Blockchains / Distributed Ledger Technologies (DLT) für alle Bundesbürger, ja zukünftig sogar für alle EU-Bürger. https://medium.com/@ckahlo/blockchain-ssi-id-d7e51d98d050

Continue reading

Posts navigation

«Previous Posts 1 2 3 4 5 Next Posts»

Recent Posts

  • TU Graz lie­fert inter­na­tio­na­len Kryptographie-Standard
  • The Attackers Guide to Azure AD Conditional Access
  • IIS Crypto
  • Web Hackers vs. The Auto Industry: Critical Vulnerabilities in Ferrari, BMW, Rolls Royce, Porsche, and More
  • New AMSI Bypass Using CLR Hooking

Archives

  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • August 2022
  • May 2022
  • March 2022
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • October 2020

Categories

  • Gefundenes
  • Uncategorized
WordPress Theme: Chronus by ThemeZee.