Atomic Spotlight: Persistence with Command Process Auto Run Registry Key

Опубликовано: 24 Март 2026
на канале: Antisyphon Training
178
5

Learn attack emulation tools atomic red team caldera with Carrie Roberts from Antisyphon
Training: https://www.antisyphontraining.com/at...
00:00 - Intro
00:12 - Boot or Logon Auostart Execution
01:36 - T1547
03:00 - Atomic Test 16 HKLM
08:05- Atomic Test 17 HKCU

Description: In this video I demo a simple way to get persistent code execution every time the windows command prompt (cmd.exe) is run. This can be accomplished from a standard user context without requiring administrative access.

Other courses by Carrie Roberts: "PowerShell For InfoSec: What You Need to Know!" course: https://www.antisyphontraining.com/po...

Antisyphon Socials
Twitter:   / antisy_training  
LinkedIn:   / antisyphon-training  
Discord:   / discord  
Mastodon: https://infosec.exchange/@Antisy_Trai...

Antisyphon Training
Pay What You Can: https://www.antisyphontraining.com/pa...
Live Training: https://www.antisyphontraining.com/co...
On Demand Training: https://www.antisyphontraining.com/on...

Antisyphon Shirts
https://spearphish-general-store.mysh...

Educational Infosec Content
Black Hills Infosec YouTube:    / blackhillsinformationsecurity  
Black Hills Infosec Blogs: https://www.blackhillsinfosec.com/blog/
Wild West Hackin' Fest YouTube:    / wildwesthackinfest  
Active Countermeasures YouTube:    / activecountermeasures  

Backdoors & Breaches - Incident Response Card Game
Backdoors & Breaches: https://www.backdoorsandbreaches.com/
Play B&B Online: https://play.backdoorsandbreaches.com

Join us at the annual information security conference in Deadwood, SD (in-person and virtually) — Wild West Hackin' Fest: https://wildwesthackinfest.com/

#bhis #antisyphon #infosec