I was playing with code injection to read processes keyrings on Linux. I've wrote a new tool, keydump, and showing how we can use it to extract cleartext credentials from sssd. Not an easy exploitable scenario, but I hope you like the article!!
Eloy
Recently I've working with Azure from Linux with Azure cli, but I found it limited for some hacking operations, so I started to develop several utilities to improve it.
My favorite is az-login-with-token, that allows to directly inject an Access and Refresh Token in the token cache, and working with them from Azure Cli.
$ az ad signed-in-user show
Please run 'az login' to setup account.
$ az-login-with-token -a eyJ0eXAiOiJKV1...
$ az ad signed-in-user show
{
"@odata.context": "https://graph.microsoft.com/v1.0/...
Shellnova: A template for generating advances Linux shellcodes from c code that resolves libc functions dynamically. Inspired from Windows Stardust of @C5pider@infosec.exchange .
Hoxe alégrame presentar un novo post en hackliza sobre como podemos evitar que sudo nos pida un contrasinal "roubandollo" a outra sesión do mesmo usuario https://hackliza.gal/posts/stealing_sudo_sessions_with_ptrace/
@spectrumgirl@xarxa.cloud @hackliza@defcon.social Se se coce algo avisaremos, por suposto! Mais a ver quen se atreve a meterse en Vigo en Decembro 😆