Evilginx2 Man-in-the-Middle Attacks - Tradecraft Security Weekly #29
Evilginx2 Man-in-the-Middle Attacks - Tradecraft Security Weekly #29
Evilginx2 is a man-in-the-middle framework that can be utilized to intercept credentials including two-factor methods vi... Read more
9 Oct 2018
•
22mins
Black Hat & DEF CON 2018 - Tradecraft Security Weekly #28
Black Hat & DEF CON 2018 - Tradecraft Security Weekly #28
This is the Hacker Summer Camp 2018 edition of Tradecraft Security Weekly. In this week's episode Beau Bullock (@dafthac... Read more
21 Aug 2018
•
14mins
PXE Boot Attacks - Tradecraft Security Weekly #27
PXE Boot Attacks - Tradecraft Security Weekly #27
Network administrators often utilize Pre-boot Execution Environment (PXE) to rapidly deploy new systems on a network eas... Read more
13 Aug 2018
•
18mins
OSINT & External Recon Pt. 2: Contact Discovery - Tradecraft Security Weekly #26
OSINT & External Recon Pt. 2: Contact Discovery - Tradecraft Security Weekly #26
During the reconnaissance phase of a penetration test being able to discover employee names and email addresses of an or... Read more
1 Aug 2018
•
12mins
Phishing 2FA Tokens with CredSniper - Tradecraft Security Weekly #25
Phishing 2FA Tokens with CredSniper - Tradecraft Security Weekly #25
Organizations are implementing two-factor on more and more web services. The traditional methods for phishing credential... Read more
13 Apr 2018
•
19mins
Evading Network-Based Detection Mechanisms - Tradecraft Security Weekly #24
Evading Network-Based Detection Mechanisms - Tradecraft Security Weekly #24
In this episode of Tradecraft Security Weekly hosts Beau Bullock (@dafthack) and Mike Felch (@ustayready) discuss method... Read more
29 Mar 2018
•
19mins
HTML5 Storage Exfil via XSS - Tradecraft Security Weekly #23
HTML5 Storage Exfil via XSS - Tradecraft Security Weekly #23
It is fairly common for pentesters to discover Cross-Site Scripting (XSS) vulnerabilities on web application assessments... Read more
8 Jan 2018
•
14mins
Linux Privilege Escalation - Tradecraft Security Weekly #22
Linux Privilege Escalation - Tradecraft Security Weekly #22
After getting a shell on a server you may or may not have root access. To gain privileged access to a Linux system it ma... Read more
14 Dec 2017
•
17mins
Leaking Windows Creds Externally Via MS Office - Tradecraft Security Weekly #21
Leaking Windows Creds Externally Via MS Office - Tradecraft Security Weekly #21
In this episode of Tradecraft Security Weekly, Mike Felch discusses with Beau Bullock about the possibilities of using f... Read more
1 Dec 2017
•
12mins
Google Event Injection - Tradecraft Security Weekly #20
Google Event Injection - Tradecraft Security Weekly #20
Google provides the ability to automatically add events to a calendar directly from emails received by Gmail. This provi... Read more
3 Nov 2017
•
13mins