Carnal0wnage Blog
Saturday, December 28, 2013

Creating a iOS7 Application Pentesting Environment

›
Now that you have your shiny new Evasion7 jailbreak running it's time to set up the environment for application testing! Getti...
3 comments:
Thursday, December 26, 2013

Where has CG been?

›
I've been here....work has kept me super busy...pretty sure there is a post in 2012 that says about the same. :-/ I attempted to recru...
1 comment:
Monday, December 23, 2013

Best non-technical book I read this year

›
So first of a few end of year posts... Best non-technical book i read this year was Rich Dad Poor Dad I'd like to thank Joe McC...
4 comments:
Friday, October 4, 2013

AD Zone Transfers as a user

›
The tired and true method for Zone Transfers are using either nslookup: nslookup ls -d domain.com.local Or dig: dig -t AXFR domain...
1 comment:

Dumping a domain's worth of passwords with mimikatz

›
clymb3r recently posted a script called " Invoke-Mimikatz.ps1 " basically what this does is reflectively injects mimikatz into m...
6 comments:
Wednesday, September 11, 2013

Stealing passwords every time they change

›
Password Filters [0] are a way for organizations and governments to enforce stricter password requirements on Windows Accounts than those a...
5 comments:
Tuesday, September 10, 2013

Changing proxychains' "hardcoded" DNS server

›
If you've ever used proxychains to push things through Meterpreter, one of the most annoying things is its "hardcoded" DNS se...
Wednesday, September 4, 2013

Finding Executable Hijacking Opportunities

›
Background DLL Hijacking is nothing new and there are a number of ways to find the issue, but the best way I have found is a bit more f...
3 comments:
Wednesday, August 28, 2013

Want to break some Android apps?

›
1st off, Hi. I'm @jhaddix the newest guy on this blog... Android App testing requires some diverse skills depending on what you'r...
4 comments:
Wednesday, July 31, 2013

Mimikatz Minidump and mimikatz via bat file

›
I tweeted about this blog post a few weeks ago and got to use it on a PT, so its no secret... also mubix beat me to this post , but i'...
5 comments:
‹
›
Home
View web version
Powered by Blogger.

Contributors

  • CG
  • Javuto
  • cktricky