NTUSER.MAN
https://jh.live/flare-011526 || Manage threat intelligence and your exposed attack surface with Flare! Try a free trial and see what info is out there: https://jh.live/flare-011526 Video demo of the NTUSER dot MAN trick I saw floating around before the new year -- I did not know this was a thing👀 Hat tip to DeceptIQ et al.... we showcase: 1. breaking a Windows login with an empty user profile, 2. getting initial access EZPZ with a Sliver C2 implant, 3. exporting, downloading, and hijacking an existing target user profile NTUSER.DAT or HKCU Registry hive, 4. converting hives from .reg plaintext to binary with the HiveSwarming.exe tool, 5. and establishing persistence with the new backdoored NTUSER dot MAN profile we upload! No Registry writes, API calls or registry callbacks because it's just a single file placed on disk! Kinda neat. This is my first recording after a month break for the holidays and it was painful -- lots of fails and mistakes and it took many hours 😅 I'm experimenting with MEMES in the THUMBNAIL and SHORT video TITLES to MITIGATE against CLICKBAIT Also experimenting with longer social text promos for video releases to add more preview details and context. I no longer have to feed algorithms, but LLMs, too! Feels good to get something out the door again. --------- https://deceptiq.com/blog/ntuser-man-... https://github.com/elastic/detection-... https://learn.microsoft.com/en-us/win... https://github.com/stormshield/HiveSw... https://persistence-info.github.io/ Learn Cybersecurity and more with Just Hacking Training: https://jh.live/training See what else I'm up to with: https://jh.live/newsletter ℹ️ Affiliates: Learn how to code with CodeCrafters: https://jh.live/codecrafters Host your own VPN with OpenVPN: https://jh.live/openvpn Get Blue Team Training and SOC Analyst Certifications with CyberDefenders: https://jh.live/cyberdefense

He tried to hack me...

this MP3 file is malware

can we use ai to find good domains?

Something is jamming GPS over Europe. Here's what we found

Fable JUST made EVERYONE MAD...

DEF CON 32 - Inside the FBI’s Secret Encrypted Phone Company ‘Anom’ - Joseph Cox

I tried finding Hidden Gems on AliExpress AGAIN! (Part 19)

Exposing The Solid State Donut Battery. It's Over.

I Gave ChatGPT a Body

How Your Phone is Tracked in 2026 – And How to Stop It

ServiceUI.exe

they tried to hack me so i confronted them

DEF CON 33 - Kill List: Hacking an Assassination Site on the Dark Web - Carl Miller, Chris Monteiro

researcher accidentally finds 0-day affecting his entire internet service provider

"Something Wicked This Way Comes" — Why The AI Bubble Isn't What You Think

Sarah Paine - Why Putin and Xi can't escape geography

The File Sharing Site The FBI Couldn't Take Down (MediaFire)

Building Hollywood Motion Capture from Scratch

Hacking '❤️' to Track ANY WhatsApp or Signal User

