Player FM 앱으로 오프라인으로 전환하세요!
Meterpreter with Categorized Domains & Trusted Certs - Tradecraft Security Weekly #4
Manage episode 180935075 series 1456935
It is common for organizations to proxy web traffic so they can place restrictions on what websites can be visited by employees. To make the management of allowing or denying access to a large number of sites easier many web proxies utilize categorization engines to group sites into various subjects. Uncategorized sites are generally blocked. In this episode I show how it's easy to locate recently expired domains that have been categorized already, and can be utilized to get past web proxy filters. Additionally, I show how easy it is to set up a trusted certificate on the payload handler to encrypt the session using a custom cert.
Links: DomainHunter - https://github.com/minisllc/domainhunter
Brian Fehrman Blog Post - http://www.blackhillsinfosec.com/?p=5831
14 에피소드
Manage episode 180935075 series 1456935
It is common for organizations to proxy web traffic so they can place restrictions on what websites can be visited by employees. To make the management of allowing or denying access to a large number of sites easier many web proxies utilize categorization engines to group sites into various subjects. Uncategorized sites are generally blocked. In this episode I show how it's easy to locate recently expired domains that have been categorized already, and can be utilized to get past web proxy filters. Additionally, I show how easy it is to set up a trusted certificate on the payload handler to encrypt the session using a custom cert.
Links: DomainHunter - https://github.com/minisllc/domainhunter
Brian Fehrman Blog Post - http://www.blackhillsinfosec.com/?p=5831
14 에피소드
모든 에피소드
×플레이어 FM에 오신것을 환영합니다!
플레이어 FM은 웹에서 고품질 팟캐스트를 검색하여 지금 바로 즐길 수 있도록 합니다. 최고의 팟캐스트 앱이며 Android, iPhone 및 웹에서도 작동합니다. 장치 간 구독 동기화를 위해 가입하세요.