DFIR Labs CTF by The DFIR Report
Date: Sept. 7, 2024, 4 p.m. — 07 Sept. 2024, 20:00 UTC [add to calendar]
Format: Jeopardy
On-line
Offical URL: https://thedfirreport.com/services/dfir-labs/ctf/
Rating weight: 0
Event organizers: The DFIR Report
smbtakeover A technique to unbind and rebind 445/tcp on Windows without loading a driver, loading a module into LSASS, or rebooting the target machine. Implemented to ease the burden of SMB-based NTLM relays while...
The post smbtakeover: Unbind 445/tcp on Windows via SCM interactions appeared first on Penetration Testing Tools.
Real Intelligence Threat Analytics Real Intelligence Threat Analytics (RITA) is an open-source framework for network traffic analysis. The framework ingests Bro Logs, and currently supports the following analysis features: Beaconing Detection: Search for signs of...
The post RITA: Real Intelligence Threat Analytics appeared first on Penetration Testing Tools.
strace – the Linux syscall tracer strace is a diagnostic, debugging, and instructional userspace utility for Linux. It is used to monitor and tamper with interactions between processes and the Linux kernel, which include...
The post strace: a diagnostic, debugging, and instructional userspace utility for Linux appeared first on Penetration Testing Tools.