BITSADMIN Blog - Mystery guest in your IT infrastructure
RSS Feed

Articles

  • Windows Security Updates for Hackers

    Windows versions, releases and patch levels are a rather complex matter. This post brings structure in how Windows versioning and patching works and how to identify which vulnerabilities a Windows installation is vulnerable to.

    Read More »

  • Spying on users using Remote Desktop Shadowing - Living off the Land

    How to spy on users on remote computers making only use of Windows' built-in functionality? This post will explain the steps to (ab)use Windows' Remote Desktop feature to view a remote user's desktop using native Windows functionality without them noticing it.

    Read More »

  • Extracting credentials from a remote Windows system - Living off the Land

    How to obtain the credentials from a remote machine or Domain Controller making only use of Windows' built-in functionality? This post will go through the steps of using WMI and SMB in PowerShell from an attacker Windows machine to get hold of the remote files storing the credentials and subsequently extracting them.

    Read More »