Learn attack emulation tools atomic red team caldera with Carrie Roberts from Antisyphon
Training: https://www.antisyphontraining.com/at...
00:00 - Intro
00:12 - Boot or Logon Auostart Execution
01:36 - T1547
03:00 - Atomic Test 16 HKLM
08:05- Atomic Test 17 HKCU
Description: In this video I demo a simple way to get persistent code execution every time the windows command prompt (cmd.exe) is run. This can be accomplished from a standard user context without requiring administrative access.
Other courses by Carrie Roberts: "PowerShell For InfoSec: What You Need to Know!" course: https://www.antisyphontraining.com/po...
Antisyphon Socials
Twitter: / antisy_training
LinkedIn: / antisyphon-training
Discord: / discord
Mastodon: https://infosec.exchange/@Antisy_Trai...
Antisyphon Training
Pay What You Can: https://www.antisyphontraining.com/pa...
Live Training: https://www.antisyphontraining.com/co...
On Demand Training: https://www.antisyphontraining.com/on...
Antisyphon Shirts
https://spearphish-general-store.mysh...
Educational Infosec Content
Black Hills Infosec YouTube: / blackhillsinformationsecurity
Black Hills Infosec Blogs: https://www.blackhillsinfosec.com/blog/
Wild West Hackin' Fest YouTube: / wildwesthackinfest
Active Countermeasures YouTube: / activecountermeasures
Backdoors & Breaches - Incident Response Card Game
Backdoors & Breaches: https://www.backdoorsandbreaches.com/
Play B&B Online: https://play.backdoorsandbreaches.com
Join us at the annual information security conference in Deadwood, SD (in-person and virtually) — Wild West Hackin' Fest: https://wildwesthackinfest.com/
#bhis #antisyphon #infosec