文末有惊喜!
LocalPotato攻击是一种针对本地认证的NTLM反射攻击。
Windows NTLM 在进行身份验证时存在漏洞,允许拥有低权限的本地攻 击者通过运行特制程序将权限提升至 SYSTEM。
Windows
Server 2012 R2
Windows
RT 8.1
Windows
8.1 for x64-based systems
Windows
8.1 for 32-bit systems
Windows
7 for x64-based Systems Service Pack 1
Windows
7 for 32-bit Systems Service Pack 1
Windows
Server 2016 (Server Core installation)
Windows
Server 2016
Windows
Server 2022 (Server Core installation)
Windows
Server 2022
Windows
Server 2012 (Server Core installation)
Windows
Server 2012
Windows
Server 2008 R2 for x64-based Systems Service Pack
1
(Server Core installation)
Windows Server 2008 R2 for x64-based Systems Service Pack
Windows
Server 2012 R2 (Server Core installation)
Windows
10 Version 1607 for x64-based Systems
Windows
10 Version 1607 for 32-bit Systems
Windows
10 for x64-based Systems
Windows
10 for 32-bit Systems
Windows
10 Version 22H2 for 32-bit Systems
Windows
10 Version 22H2 for ARM64-based Systems
Windows 10 Version 22H2 for x64-based Systems
Windows
11 Version 22H2 for x64-based Systems
Windows
11 Version 22H2 for ARM64-based Systems
Windows
10 Version 21H2 for x64-based Systems
Windows
10 Version 21H2 for ARM64-based Systems
Windows
10 Version 21H2 for 32-bit Systems
Windows
11 version 21H2 for ARM64-based Systems
Windows
11 version 21H2 for x64-based Systems
Windows
10 Version 20H2 for ARM64-based Systems
Windows
10 Version 20H2 for 32-bit Systems
Windows
10 Version 20H2 for x64-based Systems
Windows
Server 2019 (Server Core installation)
Windows
Server 2019
Windows
10 Version 1809 for ARM64-based Systems
Windows
10 Version 1809 for x64-based Systems
Windows
10 Version 1809 for 32-bit Systems
注意:该漏洞已被微软在2023年1月的补丁星期二中以CVE-2023-21746修复。如果你对一个打过补丁的机器运行这个漏洞,它将不会工作。
https://github.com/decoder-it/LocalPotato
内容介绍:
这本书凝结了腾讯的一线经验,可以帮助读者全面学习大数据安全治理与防范的背景、关键技术和对抗思路,手把手教你打造反欺诈对抗系统。就如何对抗黑产,给出了具体的对抗思路、关键技术方案与反欺诈实战案例,帮助企业打造安全护城河。
作者介绍:
作者张凯和张旭是来自腾讯的工程师。一直从事大数据安全方面的工作,积累了10多年的黑灰产对抗经验,主要涉及游戏安全对抗、业务防刷、金融风控和反诈骗对抗系统等,拥有丰富的实战经验
1. 开奖时间:2月19日12:00
2. 活动规则:
① 注意是点击下方名片发"抽奖"参与即可
② 必要条件:开奖前转发本文到朋友圈,开奖前不可删除;
③ 开奖结束后,请中奖小伙伴及时将中奖信息和朋友圈转发记录发送到微信:Augenstern_Dark,超过24小时未领取的视为自动放弃哈!!!
未满足②条件但被抽中,则获奖资格会被取消哦
原文始发于微信公众号(渗透Xiao白帽):【抽奖送书】New土豆 | Win新提权漏洞利用工具(附下载)
免责声明:文章中涉及的程序(方法)可能带有攻击性,仅供安全研究与教学之用,读者将其信息做其他用途,由读者承担全部法律及连带责任,本站不承担任何法律及连带责任;如有问题可邮件联系(建议使用企业邮箱或有效邮箱,避免邮件被拦截,联系方式见首页),望知悉。
- 左青龙
- 微信扫一扫
-
- 右白虎
- 微信扫一扫
-
评论