Wednesday, October 27, 2021

Cobalt Strike C2 Hunting with Shodan

Four techniques:

Default certificate.

Hash + 50050 port (FP filtering is required).

JARM (FP filtering is required).

ASN/ISP scanning (this one is really handy for pivoting).

You can read my Twitter thread where I explained the logic behind each technique….

Read More

Latest news
Related news