ZERO DAILY

Hacking, AppSec, and Bug Bounty newsletter

2018-12-07 | Hacktivity highlights, Red teaming mind map, and In defense of Mimikatz

Friday, December 7

HACKTIVITY HIGHLIGHTS

TWEET OF THE DAY

  • Today I found out that ftp.exe can be used as a #lolbin. run ftp.exe, type "!" (calls the shell() function inside ftp.exe) followed by whatever it is that you want to run, i.e "!powershell"
    File under: Things that my teammates and I are finding when looking at windows binaries. - @0xAmit

OTHER ARTICLES WE’RE READING

ABOUT ZERO DAILY

Zero Daily is a daily newsletter that highlights application security, bug bounty, and hacker focused topics. The content is curated with love by @luketucker and brought to you by HackerOne.

Friends don’t keep good things to themselves - forward this to your homies and co-workers. BTW, want to see who runs bug bounties?

Have a news tip / story to highlight? We’d love to hear about it. Email: zerodaily@hackerone.com

Checksum verification of downloaded files is a totally failed security control.

@_mwc