Hacker Talks
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
digicat@infosec.pubM to blueteamsec@infosec.pubEnglish · 6 months ago

HKLM\SYSTEM\Setup\sMarTdEpLoY -  The (Static) Keys to Abusing PDQ SmartDeploy

specterops.io

external-link
message-square
1
link
fedilink
2
external-link

HKLM\SYSTEM\Setup\sMarTdEpLoY -  The (Static) Keys to Abusing PDQ SmartDeploy

specterops.io

digicat@infosec.pubM to blueteamsec@infosec.pubEnglish · 6 months ago
message-square
1
link
fedilink
HKLM\SYSTEM\Setup\sMarTdEpLoY -  The (Static) Keys to Abusing PDQ SmartDeploy - SpecterOps
specterops.io
external-link
TL;DR: Prior to version 3.0.2046, PDQ SmartDeploy used static, hardcoded, and universal encryption keys for secure credential storage. Low-privileged users may recover and decrypt privileged credentials, such as Local Administrator or Active Directory domain-joined accounts, from the registry of managed devices or from operating system (OS) deployment files stored on deployment servers. Introduction PDQ SmartDeploy […]
alert-triangle
You must log in or # to comment.
  • digicat@infosec.pubOPM
    link
    fedilink
    English
    arrow-up
    1
    ·
    6 months ago

    https://github.com/garrettfoster13/NotSoSmartDeploy

blueteamsec@infosec.pub

blueteamsec@infosec.pub

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

For [Blue|Purple] Teams in Cyber Defence - covering discovery, detection, response, threat intelligence, malware, offensive tradecraft and tooling, deception, reverse engineering etc.

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 54 users / day
  • 131 users / week
  • 315 users / month
  • 930 users / 6 months
  • 2 local subscribers
  • 630 subscribers
  • 2.41K Posts
  • 195 Comments
  • Modlog
  • mods:
  • digicat@infosec.pub
  • UI: unknown version
  • BE: 0.19.15
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org