Carnal0wnage Blog
Tuesday, March 25, 2014

DNS Brute String

›
just sticking this here so i can find it later. thanks @mubix cat hosts.txt | xargs -t -I subdomain dig +noall subdomain.THEDOMAIN.com +an...
3 comments:
Wednesday, March 12, 2014

Webmin Brute Forcing

›
So i ran across a bunch of webmin boxes on a pentest. I went to just go try http_login or some other spiffy Metasploit auxiliary module but...
2 comments:
Thursday, February 20, 2014

Finding malicious DLLs with Volatility

›
Colin and I were working on an memory image the other day and needed to find DLLs loaded by svchost.exe. We turned to everyone's default...
Thursday, January 2, 2014

Modern Day Gold Mining

›
Well maybe not Gold...but Litecoins, hobonickels, dodgecoins, and other kinds of *coins* We've all heard about Bitcoins (BTC) and all ...
Saturday, December 28, 2013

Creating a iOS7 Application Pentesting Environment

›
Now that you have your shiny new Evasion7 jailbreak running it's time to set up the environment for application testing! Getti...
3 comments:
Thursday, December 26, 2013

Where has CG been?

›
I've been here....work has kept me super busy...pretty sure there is a post in 2012 that says about the same. :-/ I attempted to recru...
1 comment:
Monday, December 23, 2013

Best non-technical book I read this year

›
So first of a few end of year posts... Best non-technical book i read this year was Rich Dad Poor Dad I'd like to thank Joe McC...
4 comments:
Friday, October 4, 2013

AD Zone Transfers as a user

›
The tired and true method for Zone Transfers are using either nslookup: nslookup ls -d domain.com.local Or dig: dig -t AXFR domain...
1 comment:

Dumping a domain's worth of passwords with mimikatz

›
clymb3r recently posted a script called " Invoke-Mimikatz.ps1 " basically what this does is reflectively injects mimikatz into m...
6 comments:
Wednesday, September 11, 2013

Stealing passwords every time they change

›
Password Filters [0] are a way for organizations and governments to enforce stricter password requirements on Windows Accounts than those a...
5 comments:
‹
›
Home
View web version
Powered by Blogger.

Contributors

  • CG
  • Javuto
  • cktricky