How to get URL link on X (Twitter) App
First, I started from a stageless Cobalt Strike beacon payload generated using my custom Artifact Kit, already including some advanced evasion features what I didn't want to rewrite again.
https://twitter.com/an0n_r0/status/1571598587439775745

WebDAV target for coerced NTLM auth should be a dotless hostname (conforming Trusted/Intranet zone). No worries, arbitrary hostname can be registered even using a low-privileged domain account in ADIDNS (using the dnstool script in krbrelayx).
https://twitter.com/_EthicalChaos_/status/1560343743177396224
It is relatively easy to navigate to a customer service selector page. At the bottom there should be a county chooser according to the text, but there is nothing below. Let’s see why. 2/🧵⬇️
one common scheme is: ldap://host:port/Basic/Command/Base64/[base64encodedstring].