Skip to content

Instantly share code, notes, and snippets.

Avatar

Brian Johnson braimee

View GitHub Profile
View 7MS_Slack_channels.md

These are the Slack channels featured on the 7 Minute Security Slack channel:

7MSUG

A channel for the 7MS User's Group, which is slated to start monthly(ish) in January, 2019. Currently looking for interested sponsors, speakers and attendees!

BPATTY

Basically just a place to receive RSS notifications when the BPATTY project gets updated.

blueteam

Trying to stop those pesky pentesters and other adversaries? Share your favorite defensive tools, tips, scripts and strategies!

View ADSecurity101.md

Active Directory Security 101

This document complements the Active Directory security topics talked about on the 7 Minute Security podcast miniseries related to Active Directory - specifically #329. The purpose of this doc is to compile resources we can all use to make our Active Directory environments more physically and logically secure. Here we go....

Practice good physical security

I can't tell you how many companies I've run into that have flippin' Fort Knox around their DCs at their primary office (cameras, motion detectors, angry guard dogs, snipers, etc.) but then the branch office has a DC under the receptionist's desk with no security controls. Make sure all domain controllers are physically locked down. I think a good minimum config is to have the DC locked in a room with keycard access - where only a subset of employees have physical access.

Put users in a least priv

@braimee
braimee / lowhanging.md
Last active Feb 26, 2020
Low-hanging hacker fruit (and how to remove it)
View lowhanging.md

Low Hanging Hacker Fruit

This gist focuses on (relatively) free and (relatively) easy things organizations can do to better protect their networks without buying yet another black box with blinking lights.

Got some ideas of your own that should be on this list? Please leave a comment below!

Implementing a stronger AD password policy

Microsoft has a great paper on the topic that gives some nice high level recommendations:

  • Use a unique password per site
  • Enable complexity
@braimee
braimee / 7mi.md
Last active Nov 13, 2018
7 minute interviews - by 7 Minute Security
View 7mi.md

7 minute interviews? What's that?

It's a new (and hopefully fun) interview format I want to engage in with members of the information security community on the 7 Minute Security podcast.

Wait wait wait. Who are you? What's this all about?

I'm Brian from 7 Minute Security, LLC and I've been having a blast doing some longer-form interviews with security folks, but I thought it would be fun to do a shorter-form outline where I ask 7 questions (ok, maybe a few more than 7...but I like lucky numbers). Some questions will be serious. Others will not.

Ok I'll bite. What kind of questions would you ask in this 7-minute interview?

Check these out:

@braimee
braimee / mostly_painless_cuckoo_sandbox_install.md
Last active Jan 21, 2021
Mostly painless Cuckoo Sandbox install
View mostly_painless_cuckoo_sandbox_install.md

How to Build a Cuckoo Sandbox Malware Analysis System

I had a heck of a time getting a Cuckoo sandbox running, and below I hope to help you get one up and running relatively quickly by detailing out the steps and gotchas I stumbled across along the way. I mention this in the references at the end of this gist, but what you see here is heavily influenced by this article from Nviso

Build your Linux Cuckoo VM

  1. Setup a Ubuntu 16.04 64-bit desktop VM (download here) in VMWare with the following properties:
  • 100GB hard drive
  • 2 procs
  • 8 gigs of RAM
@braimee
braimee / pwn-o-magic.md
Last active Dec 8, 2020
Pwning internal networks automagically
View pwn-o-magic.md

Intro

This document pools several awesome tools and blog entries together (see "Resources" at the end of this doc) in an attempt to automate the process of getting an initial foothold on a network in a situation where you have no valid credentials.

Download and install ntlmrelay

Ok, so one weird thing I'm trying to figure out is if I install ntlmrelay as the first tool we'll use, these steps seem to work ok:

git clone https://github.com/CoreSecurity/impacket.git /opt/impacket
cd /opt/impacket
pip install .
@braimee
braimee / Active_Directory_dump_n_crack.md
Last active Nov 3, 2020
Active Directory hash dump n' crack methodology
View Active_Directory_dump_n_crack.md

Creating AD backup dump of user accounts and hashes

Upgrade to latest version of PowerShell

Check your version with:

$Psversiontable.psversion

If you are below Major: 5, Minor:1 head to Microsoft's download site to get the latest.

@braimee
braimee / Password_cracking_in_the_cloud.md
Last active Jan 16, 2021
Password cracking in the cloud
View Password_cracking_in_the_cloud.md
@braimee
braimee / LinkedIn_recruiter_response_template.md
Last active Mar 10, 2020
Tired of recruiters pinging you about positions you aren't interested in *BUT* you'd like to utilize their time/skills/talent to find gigs you DO want? Send this template to them!
View LinkedIn_recruiter_response_template.md

Tired of recruiters pinging you about jobs that you don't care about or are under/overqualified for, but you'd like to utilize their time/skills/talent to find gigs you DO want? Customize this template and send it to them!


Hello,

Thanks for your email. The position you sent me is not a fit, however, here are some of the things I’d be looking for if I were to consider another position:

  • A contract position would be my first choice, but I would go FTE for the right opportunity
@braimee
braimee / CryptoLockerd.md
Last active Nov 15, 2018
This is an infosec-themed song called CryptoLocker'd
View CryptoLockerd.md

You can listen to this song on episode #276 of the 7 Minute Security podcast

Verse 1

You said you wouldn't do it
You said you wouldn't click that link
But you totally did
It’s clear you didn’t stop and think
How the promise of a free burrito would be all that it took
To open up our networks to virtual crooks