Тёмный

How Hackers Use netsh.exe For Persistence & Code Execution (Sliver C2) 

John Hammond
Подписаться 1,7 млн
Просмотров 83 тыс.
50% 1

j-h.io/plextrac || Save time and effort on pentest reports with PlexTrac's premiere reporting & collaborative platform in a FREE one-month trial! j-h.io/plextrac 😎
My binnim tool: github.com/JohnHammond/binnim
🔥 RU-vid ALGORITHM ➡ Like, Comment, & Subscribe!
🙏 SUPPORT THE CHANNEL ➡ jh.live/patreon
🤝 SPONSOR THE CHANNEL ➡ jh.live/sponsor
🌎 FOLLOW ME EVERYWHERE ➡ jh.live/discord ↔ jh.live/twitter ↔ jh.live/linkedin ↔ jh.live/instagram ↔ jh.live/tiktok
💥 SEND ME MALWARE ➡ jh.live/malware

Опубликовано:

 

28 июн 2023

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 65   
@RaverDK
@RaverDK Год назад
Haa played around with netsh after seeing that same Tweet... 🤓😆 And as much as i love these short bit videos i miss the old +1H videos where you just went mental on some project - Watching people fail and rethinking their approach often learns more than anything else. But again, thanks for the videos John! Keep up the great work, hope you are having fun on the journey!
@buddinglearner7085
@buddinglearner7085 11 месяцев назад
same here man!
@balrajsandhu5893
@balrajsandhu5893 8 месяцев назад
A
@HJvanWaegeningh
@HJvanWaegeningh Год назад
"Because it is over 9000." LOL
@lumosyob
@lumosyob Год назад
true man of culture 🐉🔮
@Rogueferula
@Rogueferula Год назад
He got me too. Lol
@ReligionAndMaterialismDebunked
​@@lumosyobtrueeee!
@Chris-zc9bp
@Chris-zc9bp 11 месяцев назад
Great video. I've been at this for a min, and I learn lots from all you videos. Thanks for the great content!
@aadhiseshandc7260
@aadhiseshandc7260 Год назад
Hi john! love ur vids!
@stevetheborg
@stevetheborg Год назад
when i was a kid i didnt have internet service. i did have a modem. i got an AOL disk in the mail. used aol to download boserve and got to chatting. then found a local chat room and commenced to making a list of local internet provider passwords. I would like to thank my classmates for never getting on the internet. (90's)
@squid13579
@squid13579 11 месяцев назад
John your computer Specs ? Superb video 🔥.
@cot3chcot3ch96
@cot3chcot3ch96 11 месяцев назад
nice job john love you always prof and vocal
@SamsonPavlov
@SamsonPavlov Год назад
Super cool and exciting video! Thank you for sharing! ❤️
@walterkovacs61
@walterkovacs61 Год назад
amazing, gotta try this at work
@evasionette
@evasionette Год назад
nice and early, another good video ^^
@ReligionAndMaterialismDebunked
Early crew! I love the shirt btw! I saw Jurassic Park in the theatres as a 90s kid, born in 89. :3 Hehe. Dinosaur 🦖🦕. 🐁
@lordjafar8528
@lordjafar8528 Год назад
Ur the man..that was so cool...pentesting is more than i could imagine
@telekors5730
@telekors5730 Год назад
I wonder if you leverage changeling to swap your shell code out on the fly
@jamiekomodo1751
@jamiekomodo1751 10 месяцев назад
Non-technical question (or maybe that is a technical question, after all), how are you zooming in on your screen? I take it, the reason you installed via curl (instead of kali repoisitories), is to make sure you had the most recent code?
@iconic_vide0s
@iconic_vide0s 8 месяцев назад
Really Great BRO!
@seiv-
@seiv- 11 месяцев назад
Hi John, just a question. What is the difference of this sliver C2 from metasploit and why not to use msf for those demos ? Cobalt Strike is different because the client is windows based but for those Linux based C2 clients I really do not see the difference 😢 in fact, it sometimes looks harder to do stuff on those rather than msf
@architvats2633
@architvats2633 8 месяцев назад
I have the exact same opinion. Had a look at Mythic and Havoc C2 as well which felt more exploitation C2 as compared to Covenant C2 which seemed more like post-exploitation focused. Please correct me if I'm wrong.
@mukto2004
@mukto2004 Год назад
does netsh start automtically when windows starts? thats why it is a persistence ?
@-GenDrive
@-GenDrive Год назад
Nice work. Thanks from Germany...
@Exotic69420
@Exotic69420 Год назад
🇩🇪
@vz7742
@vz7742 Год назад
hei ahmed from greece
@the-real-random-person
@the-real-random-person Год назад
damn thx for this great content!
@josh_tes
@josh_tes 2 месяца назад
Could you have used something like Shellter to inject this shell code into netsh.exe or a DLL for the binary? - also it looks like you're able to generate the payload in the shellcode format now so you don't have to use the nim script to convert it. Maybe this was added in an update to sliver
@asdfasddfs5484
@asdfasddfs5484 11 месяцев назад
Nice Tee John
@hanko498
@hanko498 Год назад
What type of VPN do you use?
@sok_leaphacker
@sok_leaphacker Год назад
Really good
@CU.SpaceCowboy
@CU.SpaceCowboy 7 месяцев назад
golang is awesome because its really easy to statically compile a single binary on any system. victim doesnt need additional stuff already installed like c# sometimes does.
@The_One_0_0
@The_One_0_0 6 месяцев назад
You could say the same for c and rust now two golang is just the child but I agree it is okay for cross compatibility much more easier then using c but both can be the same
@kireyn
@kireyn Год назад
More Sliver? Sure, more Sliver in the name of Bishop Fox!)
@liudvikasstankus
@liudvikasstankus Год назад
super cool
@BrutusMaximusAurelius
@BrutusMaximusAurelius Год назад
11:41 yeah that’s what I though haha. Because MDE immediately blocks this haha.
@hiddengo3232
@hiddengo3232 Год назад
Plz make more video like this
@FriedMonkey362
@FriedMonkey362 2 дня назад
ITS OVER 9000!
@HarvestHaven09
@HarvestHaven09 Год назад
Hi mister perfect 🎉
@DDBAA24
@DDBAA24 Год назад
Interesting, I've only ever used this with physical access to get wifi passwords. Cewl stuff.
@adamhorsky9826
@adamhorsky9826 Год назад
Not only hackers :) feds too
@bilaalmuhammad-ql1li
@bilaalmuhammad-ql1li 9 месяцев назад
how we can get can you help??? pls!!!!
@RoomTwentyNine
@RoomTwentyNine Год назад
How many virtual machine you have John ? 😅
@robertroussakov9395
@robertroussakov9395 Год назад
virtual machines are programs, not hardware
@RoomTwentyNine
@RoomTwentyNine Год назад
@@robertroussakov9395 yes i understand that 😌
@stevetheborg
@stevetheborg Год назад
who remembers Back orifice ?
@user-mv1zf1zu2q
@user-mv1zf1zu2q Год назад
this app its not on market but l tried to find it so l wanted to share it with you
@livestreamvi7991
@livestreamvi7991 2 месяца назад
Sir thank you for the binnim tool thank you so much❤❤❤😢
@designzonebeats
@designzonebeats 3 месяца назад
I love being "required" to watch hacking videos for work, at work.
@cybersec9345
@cybersec9345 Год назад
Awsome
@dhanrajbharadwaj3891
@dhanrajbharadwaj3891 Год назад
Video To hack scammers .... Process video...... How scammers playback channel hack in the scammers system
@DrewRossHenry
@DrewRossHenry 5 месяцев назад
Why "apt install sliver" when you can curl pipe to bash like a an absolute maniac!
@PraveenXVlogs
@PraveenXVlogs Год назад
दुनिया की सबसे बड़ी योद्धा मां होती है।🧑‍🍼 कौन कौन मानता है इस बात को Love U Maa😘😘🥰
@brunoenricobignotti5448
@brunoenricobignotti5448 Год назад
Have you noticed you're very lookalike to the guy from LowLevelLearning? Am I crazy?
@0x1h
@0x1h Год назад
🤨
@lfcbpro
@lfcbpro 11 месяцев назад
This one is just too deep for me, within the first 4 mins there was so many different acronyms and phrases I just had no clue what was going on. Shame, I used to like John's channel, but it is just assuming the average viewer knows so much these days. I am sure for the knowledgeable it is very interesting, but they already know this stuff, so who is the target audience? Does anyone have any recommendations for some lower level content?
@_JohnHammond
@_JohnHammond 11 месяцев назад
What is the sort of content and approachability you would rather see?
@pabloalfaro2595
@pabloalfaro2595 5 месяцев назад
its crazy that you talk about how hard it was for the 'average viewer' to watch and when asked what he can do to improve, you stay silent.
@LilPozzer
@LilPozzer Год назад
im the first!!!!
@Udjsieid
@Udjsieid Год назад
Bro hit the gym also
@asynciome6737
@asynciome6737 8 месяцев назад
If you don’t know what he’s saying then don’t watch it stop complaining we need more advanced videos bruh
@stephanrogers8947
@stephanrogers8947 Год назад
NO idea what's going on here. John's gotten worse. Next video he'll be programming his own AI in python and saying how easy it was....
@alexleungnet
@alexleungnet Год назад
Anyone know how to resolve this: ┌──(root㉿kali)-[/opt/binnim] └─# nimble build --verbose Verifying dependencies for binnim@0.1.0 Error: Unsatisfied dependency: nim (>= 1.6.14) ┌──(root㉿kali)-[/opt/binnim] └─# apt-get upgrade nim Reading package lists... Done Building dependency tree... Done Reading state information... Done nim is already the newest version (1.6.10-2). Calculating upgrade... Done The following packages were automatically installed and are no longer required: python3-ajpy python3-pysmi python3-pysnmp4 Use 'apt autoremove' to remove them. 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded.
@dhanrajbharadwaj3891
@dhanrajbharadwaj3891 Год назад
How scammers hack there system RU-vid: scammerplayback
@DDBAA24
@DDBAA24 Год назад
1:08 , oldie but goodie ,, real friends dont let friends pipe bash 🤌
Далее
How Hackers & Malware Spoof Processes
25:57
Просмотров 65 тыс.
How Hackers Compromise BIG Networks (with NetExec)
36:41
Куда Больнее Упасть с Высоты?
25:11
The Sliver C2 Framework - Moloch
1:26:43
Просмотров 6 тыс.
I Stole a Microsoft 365 Account. Here's How.
19:57
Просмотров 332 тыс.
My Hacking Journey and Recommendations for Beginners
3:11
HAVOC C2 - Demon Bypasses Windows 11 Defender
29:50
Просмотров 145 тыс.
How Hackers Evade Program Allowlists with DLLs
17:27
Просмотров 48 тыс.
How Does Malware Know It's Being Monitored?
17:17
Просмотров 72 тыс.
How A Steam Bug Deleted Someone’s Entire PC
11:49
Просмотров 908 тыс.
Red Teaming With Havoc C2
43:19
Просмотров 11 тыс.
catch EVERY reverse shell while hacking! (VILLAIN)
19:03
a Hacker's Backdoor: Service Control Manager
17:49
Просмотров 91 тыс.
Куда Больнее Упасть с Высоты?
25:11