Red Team Notes
search
Ctrlk
Red Team Notes
  • What is ired.team notes?
  • Pinned
    • Pentesting Cheatsheets
    • Active Directory & Kerberos Abuse
  • offensive security
    • Red Team Infrastructure
    • Initial Access
    • Code Execution
    • Code & Process Injection
    • Defense Evasion
    • Enumeration and Discovery
      • Windows Event IDs and Others for Situational Awareness
      • Enumerating COM Objects and their Methods
      • Enumerating Users without net, Services without sc and Scheduled Tasks without schtasks
      • Enumerating Windows Domains with rpcclient through SocksProxy == Bypassing Command Line Logging
      • Dump Global Address List (GAL) from OWA
      • Application Window Discovery
      • Account Discovery & Enumeration
      • Using COM to Enumerate Hostname, Username, Domain, Network Drives
      • Detecting Sysmon on the Victim Host
    • Privilege Escalation
    • Credential Access & Dumping
    • Lateral Movement
    • Persistence
    • Exfiltration
  • reversing, forensics & misc
    • Internals
    • Cloud
    • Neo4j
    • Dump Virtual Box Memory
    • AES Encryption Using Crypto++ .lib in Visual Studio C++
    • Reversing Password Checking Routine
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. offensive security

Enumeration and Discovery

Windows Event IDs and Others for Situational Awarenesschevron-rightEnumerating COM Objects and their Methodschevron-rightEnumerating Users without net, Services without sc and Scheduled Tasks without schtaskschevron-rightEnumerating Windows Domains with rpcclient through SocksProxy == Bypassing Command Line Loggingchevron-rightDump Global Address List (GAL) from OWAchevron-rightApplication Window Discoverychevron-rightAccount Discovery & Enumerationchevron-rightUsing COM to Enumerate Hostname, Username, Domain, Network Driveschevron-rightDetecting Sysmon on the Victim Hostchevron-right
PreviousExecuting C# Assemblies from Jscript and wscript with DotNetToJscriptchevron-leftNextWindows Event IDs and Others for Situational Awarenesschevron-right