[FreeCoursesOnline.Me] Sektor7 - RED TEAM Operator Windows Persistence Course

[FreeCoursesOnline.Me] Sektor7 - RED TEAM Operator Windows Persistence Course

Size
794 MB
Seeders
2
Leechers
0
Files
35
Category
Added
11/09/20 at 10:50pm GMT+1
Infohash
85a2a858d1035479739fc43bfabb383b391349be

Description
Lynda and other Courses >>> https://www.freecoursesonline.me/

For Developer Tools & Apps >>> https://ftuapps.com/

Forum for discussion >>> https://1hack.us/







Author: Reenz0h

Language: English

Released: 2020

Duration: 3.5 h

Publisher: Institute Sektor7

Course Source: https://institute.sektor7.net/rto-windows-persistence



Welcome to Persistence in Windows course!



Real threat actors utilize various Tactics, Techniques and Procedures (aka TTPs). One of the tactic is Persistence - a way to survive a breached machine restart and preserve access to a target environment. There is a lot of focus on what methods adversaries use to exploit a particular vulnerability or how their C2 channels and infrastructure look like. Less often you find discussions about persistence. This course is aiming to change that.



You will learn almost 30 different persistence techniques working on Windows 10. Most of them were used by nation-state threat actors, like EquationGroup, Turla, APT29, ProjectSauron or malware, including Flame or Stuxnet.



As usual you will get not only full explanation of each technique with examples, but also a working code templates (written in C) and a complete development environment you can experiment with.



About Instructor



reenz0h, Chief Research Officer at SEKTOR7. In the industry for over 20 years. Worked in global Red Team for almost a decade. Simulated threat actors targeting IT infrastructure across various industries (financial, technology, industrial, energy, aviation) around the world. Speaker at HackCon, PWNing, WTH@ck, Sec-T, T2, DeepSec. Gave guest lectures at several military and civil academies and universities.



Founder of x33fcon security conference

and SEKTOR7 offensive research company



You Will Learn



• Knowledge about Windows persistence used by real threat actors, including nation-state adversaries



27 different techniques, including:

• DLL Proxying

• COM hijacking

• Multiaction Tasks

• Port Monitors

• Time Providers

• WMI Eventing

• LSA-as-a-Persistence

• and much more...



Target Audience



• Ethical Hackers

• Penetration Testers

• Blue Teamers

• Threat Hunters

• All security engineers/professionals wanting to learn advanced offensive tactics



Requirements



• Understanding of operating system architecture

• Some experience with Windows OS

• Basic knowledge about coding in C/C++

• Computer with min. 4 GB of RAM + 30 GB of free disk space

• VirtualBox 6.0+ installed

• Strong will to learn and having fun




File list
  • [FreeCoursesOnline.Me] Sektor7 - RED TEAM Operator Windows Persistence Course
  • 0. Websites you may like/How you can help our Group!.txt 208 B
  • 1 - Intro/01 - Introduction to Windows Persistence.mp4 7.5 MB
  • 1 - Intro/02 - Intro Addendum.mp4 20.4 MB
  • 1 - Intro/03 - Course VM Setup.mp4 6.8 MB
  • 2 - Low Privilege Persistence/04 - Start Folder and Registry Keys.mp4 25.7 MB
  • 2 - Low Privilege Persistence/05 - Logon Scripts.mp4 16.1 MB
  • 2 - Low Privilege Persistence/06 - Shortcut Mods.mp4 22.4 MB
  • 2 - Low Privilege Persistence/07 - Screensavers.mp4 13.5 MB
  • 2 - Low Privilege Persistence/08 - Powershell Profile.mp4 14.3 MB
  • 2 - Low Privilege Persistence/09 - DLL Proxying - Introduction.mp4 6.3 MB
  • 2 - Low Privilege Persistence/10 - DLL Proxying - Demo.mp4 91.5 MB
  • 2 - Low Privilege Persistence/11 - Component Object Model - Introduction.mp4 13.9 MB
  • 2 - Low Privilege Persistence/12 - COMs Registry.mp4 18.4 MB
  • 2 - Low Privilege Persistence/13 - COM Hijacks and Proxies.mp4 56.3 MB
  • 3 - Admin Level Persistence/14 - Elevated Scheduled Tasks.mp4 39.9 MB
  • 3 - Admin Level Persistence/15 - Multiaction Tasks.mp4 23 MB
  • 3 - Admin Level Persistence/16 - Modified Services.mp4 39.7 MB
  • 3 - Admin Level Persistence/17 - IFEO - Debugger - SilentProcessExit - Verifier.mp4 62.6 MB
  • 3 - Admin Level Persistence/18 - Application Shims.mp4 30.7 MB
  • 3 - Admin Level Persistence/19 - Windows Management Instrumentation - Introduction.mp4 5.5 MB
  • 3 - Admin Level Persistence/20 - WMI Event Subscription.mp4 24.6 MB
  • 3 - Admin Level Persistence/21 - AppCert DLLs.mp4 36 MB
  • 3 - Admin Level Persistence/22 - AppInit DLLs.mp4 28.2 MB
  • 3 - Admin Level Persistence/23 - Netsh Helper DLLs.mp4 23.3 MB
  • 3 - Admin Level Persistence/24 - Winlogon - SHELL-USERINIT.mp4 24.5 MB
  • 3 - Admin Level Persistence/25 - Time Providers.mp4 37.2 MB
  • 3 - Admin Level Persistence/26 - Port Monitors.mp4 33.8 MB
  • 3 - Admin Level Persistence/27 - Local Security Authority - Introduction.mp4 8.4 MB
  • 3 - Admin Level Persistence/28 - LSA-as-a-Persistence - SSPs.mp4 38.5 MB
  • 3 - Admin Level Persistence/29 - LSA-as-a-Persistence - Password Filters.mp4 25.2 MB
  • 4 - Assignments/ass1.txt 103 B
  • 4 - Assignments/ass2.txt 158 B
  • 4 - Assignments/ass3.txt 298 B
  • 4 - Assignments/ass4.txt 535 B
  • RTO-pers.zip 220.1 KB

Rating
Not rated yet
Log in to rate

Comments

No comments yet.


Similar torrents
NameSizeDate
16 MB08/04/261592810603
8 MB08/10/261589010590
8 MB08/04/261588010581
43 MB08/10/261579410528
18 MB08/11/261574810519
13 MB08/09/261571510470
12 MB08/04/261558510387
3 MB08/14/261555610376
25 MB11/20/22136599085
17 MB03/02/2397456497
10 MB03/01/2373474926
51 MB03/01/2372994884
11 MB05/14/2362944187
31 MB05/14/2362534157
59 MB05/14/2360284011