Загрузка видео...
Не удалось загрузить видео
Did some experiments on bypassing PPL Protection and Windows Defender, to dump LSASS. No detections so far! tasty pepperoni's PPLBlade repo: My short write-up: #adversarytactics #redteam #tacticaladversary #PPLBlade
27,632 просмотров • 2 лет назад •via X (Twitter)
Комментарии: 3

Abhijith B R2 лет назад
PPLBlade Could be used to simulate adversarial actions against endpoint defense measures in Windows systems.

Sam ☁️🪵2 лет назад
@tastypepperoni Again, nice @abhijithbr ! In terms of prevention I don't see much except priv esc controls before getting admin. Detection wise, driver/image loaded? Do you see anything else?

Joe2 лет назад
@rsnksg @tastypepperoni
