Главная
Study mode:
on
1
Intro
2
Background knowledge
3
The new shiny
4
Extended API (extapi)
5
extapi - adsi_domain_query
6
extapi - Service enumeration
7
extapi - Service control
8
extapi - Clipboard
9
Mimikatz 2.0 (kiwi)
10
Recap - stagers
11
Recap - WinINET vs WinHTTP
12
Recap - Establishing Meterpreter
13
Stager and Stage Changes
14
Configuration Block
15
Configuration requirements
16
Transport Data URLS
17
Stageless Configuration
Description:
Explore the evolution and advanced features of Meterpreter in this comprehensive conference talk from the 44CON Information Security Conference. Dive into the latest developments that have transformed Meterpreter into a more powerful tool for red team engagements. Learn about core functionalities and newly introduced capabilities, including stageless payloads, transport modification, paranoid mode, and persistence techniques. Gain insights into avoiding common pitfalls that cause shells to fail and discover how to leverage new features for establishing stronger footholds in target networks. Cover technical aspects of the Extended API (extapi), including ADSI domain queries, service enumeration and control, and clipboard manipulation. Examine the integration of Mimikatz 2.0 (kiwi) and understand the differences between stagers and stageless payloads. Delve into configuration blocks, transport data URLs, and other critical components that enhance Meterpreter's effectiveness in modern security assessments. Read more

Meterpreter - Understanding the New Shiny

44CON Information Security Conference
Add to list