DRPΞΛB0DY
drp3ab0dy.bsky.social
DRPΞΛB0DY
@drp3ab0dy.bsky.social
Reposted by DRPΞΛB0DY
The S is for Security. How to use WinRMS as a solid NTLM relay target, and why it’s less secure than WinRM over HTTP.

writeup: sensepost.com/blog/2025/is...

PR to impacket:
github.com/fortra/impac...

Demo: youtu.be/3mG2Ouu3Umk
WinRMS Relaying
YouTube video by Sense Post
youtu.be
April 14, 2025 at 4:40 PM
Reposted by DRPΞΛB0DY
🚀 Workshop tickets for Insomni'hack 2025 are on sale now!

Level up with:

💻 Windows Defense
📱 Mobile App Attacks
🌐 Web Security
🤖 AI SecureOps
☁️ Entra ID Security

🎟️ Limited seats! Get yours: insomnihack.ch/workshops-20...

#INSO25 #Cybersecurity #Switzerland #CyberEvent
December 11, 2024 at 10:26 AM
Reposted by DRPΞΛB0DY
I updated the diagram representing the different Point and Print configurations and their exploitation on my blog.

Hopefully, this should provide a better understanding of the whole "PrintNightmare" situation to both defenders and red teamers. 🤞
December 4, 2024 at 5:42 PM