security

Bunge Vote

Election day ahead, with candidate voting, is created and run by digitalization (SiRekap). The state of affairs within the service needs to be…

Dwinanto Saputra Dwinanto Saputra

Golden Ticket

Hello Stackers, Maintain access in the AD network (ActiveDirectory) If you have compromised DC and got DomainAdmin, you can retain access rights by…

Bima Sena Bima Sena

Rubeus

Rubeus is a C# toolset for raw Kerberos interaction and abuses. It is heavily adapted from Benjamin Delpy‘s Kekeo project (CC BY-NC-SA 4.0 license) and Vincent LE TOUX‘s MakeMeEnterpriseAdmin project (GPL…

Bima Sena Bima Sena

Kerberoasting

Hello Stackers, Kerberoasting is a cyber attack targeting the Kerberos authentication protocol, commonly used in Windows networks to securely authenticate users and devices….

Bima Sena Bima Sena

Hashcat & John

Hello stackers, today we talking about cracking according to the promise I posted earlier. Hashcat is a password recovery tool. It had a…

Bima Sena Bima Sena

ASREPRoast

Hello Stackers, the ASREPRoast attack looks for users without Kerberos pre-authentication required attribute. That means that anyone can send an AS_REQ request to…

Bima Sena Bima Sena

Impacket

Hello Stackers, Impacket is a collection of Python classes for working with network protocols. Impacket is focused on providing low-level programmatic access to…

Bima Sena Bima Sena

kerbrute

Hello Stackers, kerbrute is a tool to quickly bruteforce and enumerate valid Active Directory accounts through Kerberos Pre-Authentication Grab the latest binaries from…

Bima Sena Bima Sena

SSH Tunnels

Hello Stackers, SSH Tunnels are about connecting hosts over the network, so every lab below expectedly involves multiple “machines”. Every example requires a…

Bima Sena Bima Sena

OpenSSL Certificate Authority

Hello Stackers, The is the basic idea of this: Using OpenSSL to create our CA Create a private key for the CA CANAME=MyOrg-RootCA…

Bima Sena Bima Sena