ClickOnce (Twice or Thrice): A Technique for Social Engineering and (Un)trusted Command Execution Logo

ClickOnce (Twice or Thrice): A Technique for Social Engineering and (Un)trusted Command Execution

0
Free
Visit Website

ClickOnce is a Microsoft technology that enables the user to install and run a Windows-based smart client application by clicking a link in a web page. With a little bit of C# coding knowledge, a red teamer or penetration tester has yet another capability to add to their ethical hacker toolkit. What are the requirements for operational use? To get started with ClickOnce, we need to do our homework and get a few things prepared: For social engineering campaigns, Microsoft web browsers (Edge/Internet Explorer) are required to invoke the ClickOnce installer. Additionally, target organizations must have the appropriate version of .NET Framework installed to launch the respective payload.

FEATURES

ALTERNATIVES

Setup script for Regon-ng

Preparation process for participating in the Pacific Rim CCDC 2015.

A tool for managing multiple reverse shell sessions/clients via terminal with a RESTful API.

Participation in the Red Team for Pacific Rim CCDC 2017 with insights on infrastructure design and competition tips.

A reminder that technology alone is not enough to stay secure against social engineering tactics.

A lightweight and portable Docker container for penetration testers and CTF players

A cross-platform post-exploitation HTTP/2 Command & Control server and agent dedicated for containerized environments

A black-box obfuscation tool for Android apps with Android App Bundle support.

PINNED