Step 1: Send email with "salary_increases.xlsm"
Step 2: Wait 2 mins
Step 3: Reply-all with "Please don't open that!"
Step 4: receive shells
Staged vs Stageless Handlers/Payloads, and some gotchas/workarounds buffered.io/posts/staged-v… Get ye learnings here! #metasploit #meterpreter
Offsec have started documenting the Python extension! offensive-security.com/metasploit-unl… and offensive-security.com/metasploit-unl… /ht @loneferret
For those that missed out, but are keen to see the recordings:
Part 1: twitch.tv/th3colon1al/v/…
Part 2: twitch.tv/th3colon1al/v/…