Windows Red Team - Dynamic Shellcode Injection & PowerShell Obfuscation

Поділитися
Вставка
  • Опубліковано 27 гру 2024

КОМЕНТАРІ • 60

  • @RealCyberCrime
    @RealCyberCrime 2 роки тому +7

    you're killing it with this content Hackersploit, please upload more!! I've only seen a few of the red team videos but will def be watching more

  • @fabricenade9982
    @fabricenade9982 2 роки тому +2

    The videos of HackerSploit are always Masterclass 💪.
    The Explanations are perfectly clear.
    Just MASTERCLASS.

  • @korovamilkplus
    @korovamilkplus Рік тому +3

    Alexis, first of all I want to thank you for this fantastic Red Team Fundamentals course!
    I've done some testing, and unfortunately, despite the video being recent, almost none of the AV evasion techniques work:
    1) Invoke-Obfuscation is the only technique that works.
    2) Shellter is immediately detected, both with new versions of WinRar (32bit) and with older versions.
    3) Shikata Ga Nai is not detected by Windows Defender using 45 iterations, but the listener does not receive the reverse connection.
    I tried Shikata Ga Nai with different payloads created with MSFVenom, and with different iterations, but either it is detected or it does not make the reverse connection.
    4) In no case was I able to obscure a reverse shell created with MSFVenom.
    The tests were all conducted with Windows Defender on Windows 10 (64bit) in my laboratory.
    If you have time and desire, you could update the obfuscation techniques by perhaps deepening the topic.
    In any case, thanks as always, you're the best cybersecurity teacher.
    See you soon.

    • @korovamilkplus
      @korovamilkplus Рік тому

      UPDATE: Invoke-Obfuscation also works with PowerShell Empire (the CSharp payload is not detected).
      Unfortunately, the /powershell/privesc/bypassuac module does not work with PowerShell Empire (it is detected, both with obfuscation and without), despite working perfectly with Metasploit.

  • @ilbona87
    @ilbona87 2 роки тому +4

    I recently finished the PTSv2 course, you're a phenomenal teacher!

    • @Nikita-sj8og
      @Nikita-sj8og 2 роки тому

      Can you please give the link of same ?

    • @ilbona87
      @ilbona87 2 роки тому

      @@Nikita-sj8og It's hosted on the INE platform, you need to purchase at least a monthly subscription to take the course.

    • @ragnarok55
      @ragnarok55 2 роки тому

      Where can you finish that course He is ine platform instructor or not

  • @parkour.11parkour58
    @parkour.11parkour58 2 роки тому

    Gonna watch all your videos and comment after watching them

  • @mynealways509
    @mynealways509 2 роки тому

    Pretty hard to keep a good man down... Welcome Back HS...

  • @zarandija
    @zarandija 2 роки тому

    15'56'' You are fantestic....great video!!!!!

  • @torsec6048
    @torsec6048 2 роки тому

    happy too see you after a long time

  • @DopeForJesus
    @DopeForJesus Рік тому

    This is top notch material.

  • @baidysall9591
    @baidysall9591 2 роки тому

    Awesome video. Always providing great content…. Merry Christmas 🎉

  • @kmengkomsot1479
    @kmengkomsot1479 Рік тому

    thank you hackersploit 😍😍

  • @hackproof1
    @hackproof1 2 роки тому

    Finally… welcome back

  • @Funnnnboyy
    @Funnnnboyy 2 роки тому

    Welcome back 🎉

  • @arupsen121
    @arupsen121 2 роки тому

    After a long time came with the video.alex my favourite mentor . Can I request any video topics?

  • @byronshepherd8415
    @byronshepherd8415 2 роки тому

    Welcome back!

  • @netstreamer
    @netstreamer Рік тому

    These videos are great! One question though. Even if you evade the av won't the continuously running command prompt window in the background tip the blue team off?

  • @Tathamet
    @Tathamet Рік тому

    awesome thanks!
    but most EDR's today are really good at stopping shellter from my experience

  • @jamesparker5776
    @jamesparker5776 2 роки тому

    good to see you sir

  • @rishabhrana3773
    @rishabhrana3773 2 роки тому

    Welcome back sir

    • @HackerSploit
      @HackerSploit  2 роки тому +2

      Return of the Mack! good to be back.

    • @rishabhrana3773
      @rishabhrana3773 2 роки тому

      @@HackerSploit yes sir today i was watching your video thinking for new video

  • @RAZERKRYPTO
    @RAZERKRYPTO Рік тому

    I am a big fan of youuuuuu

  • @NightMaRe-xl9tr
    @NightMaRe-xl9tr 2 роки тому

    best hacking content ever 👍💯 , keep up the good work

  • @rishabhrana3773
    @rishabhrana3773 2 роки тому

    As usual great video. How many videos will come in this series

    • @HackerSploit
      @HackerSploit  2 роки тому

      Will share the outline in a separate video/live stream.

  • @greyhatsecurity
    @greyhatsecurity 2 роки тому

    yaaaay!!!!! its been a while

  • @gianlucasanfilippo4669
    @gianlucasanfilippo4669 Рік тому

    Great video. But I have a question: following all the steps, I get the infected executable file of winrar, but in my case then windows defender detects it , I just pass it on the victim target. How can I avoid it?Thanks

  • @daljeetbhati8353
    @daljeetbhati8353 2 роки тому

    Is this part of red teaming fundamental series part

  • @passaronegro349
    @passaronegro349 2 роки тому +1

    We follow your channel here in Brazil,,🇧🇷✨ if possible put subtitles in your videos !!!!

  • @GliddingHippo
    @GliddingHippo 2 роки тому

    can you help me .I cant install powershell it says "Package 'powershell' has no installation candidate"

  • @priiv18
    @priiv18 2 роки тому +1

    Hello Hackersploit. Can You Help Me ?. I Am interesting in Cybersecuirty. Which Books Can You Recommend To Me ?. Which Books Should l Read ?

  • @xsTaoo
    @xsTaoo Рік тому

    Input "sudo wine shellter.exe" prompt "wine: could not load kernel32.dll, status c0000135", what should I do?

  • @torsec6048
    @torsec6048 2 роки тому

    long time no see alexis

  • @ajoyjohn1487
    @ajoyjohn1487 2 роки тому

    best vdo

  • @alwan7777
    @alwan7777 2 роки тому

    pleseee review HavocFramework

  • @16saalkanigga
    @16saalkanigga 2 роки тому

    **Video idea**
    Show some offensive example of chatgpt
    How pentester can use it?
    How will it affect cybersecurity field?
    Will ai take cybersecurity job in near future?

  • @onlinewebsites3476
    @onlinewebsites3476 2 роки тому

    Yo finally !

  • @Josepp4Martinezpp4
    @Josepp4Martinezpp4 Рік тому

    My regards, brother! Is it possible to recover some photos that I had sent via messenger on a Facebook account that I deleted at the beginning of the year. The person I sent them to was automatically deleted from their inbox when my account was deleted?

  • @RealCyberCrime
    @RealCyberCrime 2 роки тому

    I work as a blue teamer at my job, but love seeing on the other side of the fence. You will not evade my defenses >:)

  • @ragnarok55
    @ragnarok55 2 роки тому

    My request please kindly explain ISO 27001 because every cyber security job asking this

  • @harshgupta1911
    @harshgupta1911 2 роки тому

    Hlo sir i am from India 🙏🏻
    Plz would u help me how would i start my journey in cybersec field

  • @dameonjensen
    @dameonjensen 2 роки тому

    Where in the hell is the link my man

  • @sureshk9297
    @sureshk9297 2 роки тому

    Hi bro, my laptop hacked plz help me

  • @ahmedsahaladamhassan8508
    @ahmedsahaladamhassan8508 2 роки тому

    Did you stop the WebApp series Sir

  • @firosiam7786
    @firosiam7786 2 роки тому

    Guess the webapp series got pushed back

  • @YoutubePremiumBot
    @YoutubePremiumBot 2 роки тому

    let me come in top10

  • @PetritK10
    @PetritK10 2 роки тому

    Where are Web Pentesting videos :D

  • @kasta851984
    @kasta851984 2 роки тому

    Great video. I've tried to do the same, but my Antivirus detected this and blocked it.

    • @PolrisTired
      @PolrisTired Рік тому

      Yeah, it seems to work on windows defender but many modern AVs are sophisticated enough to pick up on simple cases like these

  • @vinayjain322
    @vinayjain322 2 роки тому

    Yeah I'm first 🥇🥇🥇🥇🥇😃😃😃

  • @techzon4456
    @techzon4456 2 роки тому

    Please make video's on web app hacking

    • @HackerSploit
      @HackerSploit  2 роки тому +2

      Your wish is my command.

    • @techzon4456
      @techzon4456 2 роки тому

      Thank you sir...... It means a lot

  • @infallz
    @infallz 2 роки тому

    7th?