Incognito is a tool for manipulating windows access tokens and is intended for use by penetration testers, security consultants and system administrators.
Be the first to post a text review of Incognito. Rate and review a project by clicking thumbs up or thumbs down in the right column.
I had let this page stagnate somewhat since my Defcon 15 and CCC presentations. However, I have recently found the time to write a whitepaper about the security implications of Windows access tokens and also decided it was about time I uploaded my Meterpreter patch for Metasploit. The meterpreter patch works against Metasploit 3.1 and is in both the source tree and the new binary file release. The whitepaper can be found at: - http://www.mwrinfosecurity.com/publications/mwri_security-implications-of-windows-access-tokens_2008-04-14.pdf
Initial file release
I finally got round to adding the current version of the source to the SVN, so that is accessible now. Hopefully, in the near future I will find the time to actually write a white paper to help explain the use behind this tool. At that point I will make an official first release and publicise this a bit more, plus upload the slides from my DEFCON 15 talk about this. The video for my DEFCON talk is currently on Google Video for those who are interested: - http://video.google.co.uk/videoplay?docid=-1147784940011181579
Copyright © 2010 Geeknet, Inc. All rights reserved. Terms of Use
Thanks for your rating!
Would you also like to write a review?
Thanks for your review!
Get credit for your review by logging in via OpenID. Click your account provider: