open-menu
closeme
Disabling Python warnings for executing untrusted code
calendar
Aug 24, 2023
·
attack.Defense-Evansion
attack.T1562.001
·
Share on:
twitter
facebook
linkedin
copy
Using explorer.exe to open a file explorer folder via command prompt
calendar
Dec 22, 2022
·
attack.Discovery
attack.T1135
·
Share on:
twitter
facebook
linkedin
copy
Using Emojis to evade detection
calendar
Dec 5, 2022
·
( ͡° ͜ʖ ͡°)
·
Share on:
twitter
facebook
linkedin
copy
PowerShell AMSI Bypass Pattern
calendar
Nov 8, 2022
·
attack.defense_evasion
attack.t1562.001
attack.execution
·
Share on:
twitter
facebook
linkedin
copy
Scheduled task executing powershell encoded payload from registry
calendar
Jun 14, 2022
·
attack.execution
attack.persistence
attack.t1053.005
attack.t1059.001
·
Share on:
twitter
facebook
linkedin
copy
HH.exe LOLBA executing .chm files
calendar
May 24, 2022
·
attack.Compiled.HTML.File
attack.T1218.001
·
Share on:
twitter
facebook
linkedin
copy
Hiding local user accounts
calendar
May 24, 2022
·
attack.hidden.users
attack.T1564.002
·
Share on:
twitter
facebook
linkedin
copy
Deleting Windows Defender scheduled tasks
calendar
May 9, 2022
·
attack.defense_evasion
attack.t1562.001
·
Share on:
twitter
facebook
linkedin
copy
Enabling restricted admin mode
calendar
May 9, 2022
·
attack.defense_evasion
attack.t1562.001
·
Share on:
twitter
facebook
linkedin
copy
Using Lazagne to dump credentials
calendar
May 9, 2022
·
attack.credential_access
attack.t1555
·
Share on:
twitter
facebook
linkedin
copy
Using powershell specific download cradle OneLiner
calendar
May 9, 2022
·
attack.defense_evasion
attack.t1562.001
attack.execution
T1059.001
·
Share on:
twitter
facebook
linkedin
copy
to-top