I wrote a script to identify every TAKEOVER and ELEVATE attack in Misconfiguration Manager that can be run with Read-only Analyst privileges or higher in SCCM. Please share with your IT admins, defenders, clients, assessors, and friends in infosec!
posts.specterops.io/rooting-out-ri…
Today the Cyber Safety Review Board released its independent review of the Summer 2023 Microsoft Exchange Online intrusion laying out what led to the intrusion & what industry & gov't can do to ensure an intrusion at this magnitude does not happen again. go.dhs.gov/JRT
The GoPhish API can be used for some fun and games, my latest post shows how single use phishing links can be made using GoPhish + AWS SES! http418infosec.com/one-time-phish…
MachineAccountQuota = 0, preventing you from grabbing NAA creds remotely?
DPAPI to the rescue!
Ported over NAA Extraction via DPAPI to sccmhunter.
h/t: @agsolino & @clavoillotte for SystemDPAPI.py
We would like to express our condolences to Blue Teamers.
Microsoft has announced Microsoft Excel will now support Python.
More information: techcommunity.microsoft.com/t5/microsoft-3…
Didn't have time to talk about the newly released TLDs last week, but here we go.
File Archiver In The Browser: Emulating file archive software in the browser with a .zip domain for phishing
mrd0x.com/file-archiver-…
Seeing as #redteamtips have been all the rage recently, I thought I would put my own #whiteteamtips out there. My latest post is on how to make good timelines for red team testing, (hopefully) leading to less painful debriefs! http418infosec.com/diagrams-timel…
KeePass is back in the news with CVE-2023-24055, very timely as I have a post on the trigger system & some other attacks against KeePass! http418infosec.com/attacking-pass…
I have recently been using Shodan quite a lot and have found some more tips and tricks in Shodan to hunt down the weird and wonderful assets for a target.
http418infosec.com/shodan-201-rum…
We had some issues this year preparing the video recordings of #TROOPERS22. But finally the first batch of videos has been released! Go check it out here: youtube.com/@TROOPERScon 🥳 The rest will follow in the coming weeks! Happy holidays everybody! See you at #TROOPERS23!
0 Followers 99 FollowingRecruiting webshell engineers to penetrat e websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/Tg7Loz52tj
22 Followers 209 Following『果断な質問者』🍎 In the realm of decentralized storage & privacy computing, I boldly question the status quo. Timezone: UTC+9. Currently intrigued by @Filecoin. Hidde
598 Followers 269 FollowingA not-for-profit collaboration of SW cyber security expert volunteers, raising cybersec awareness, supporting skills development & innovators for the SW UK
12K Followers 4K FollowingStarted in ops&blue, now I hack for a living. SANS author/instructor in Oregon. Founder: https://t.co/c36tmCXDpt. He/him.
@[email protected]
2K Followers 1K Following"Every machine is a smoke Machine if you operate it wrong enough"
RedTeamer by day, sleeping at night!
https://t.co/ZcTfWHeGZO
155K Followers 97 FollowingJapanese Ambassador to the United Kingdom @JAPANinUK. Reposts and links are not endorsements. Ambassador's greeting message: https://t.co/TjnRawj5i7
607 Followers 0 FollowingYARA-first adversary infrastructure discovery at internet scale. Uncover residential proxies, VPNs, malware C2s, and more with 500+ baked-in rules.
4K Followers 12 FollowingReal-time threat and infostealer intelligence for MSSPs, enterprises, and researchers. Detect leaks, monitor takeovers and respond instantly.
4K Followers 598 FollowingElastic Security Labs is democratizing security by sharing knowledge and capabilities necessary to prepare for threats. Spiritually serving humanity since 2019.
648 Followers 336 FollowingWe are a platform for innovation & collaboration, with the goal of developing the Cyber ecosystem & driving economic growth in this region.
598 Followers 269 FollowingA not-for-profit collaboration of SW cyber security expert volunteers, raising cybersec awareness, supporting skills development & innovators for the SW UK
309K Followers 100 FollowingOfficial communications from CISA on X will always originate from this account. No other accounts are authorized to convey info from CISA or senior CISA staff.
869 Followers 13 FollowingCollective of Italian cyber operators. We code, hack, and publish offensive research. Tweets do not represent the views of any pasta manufacturers.
12K Followers 4K FollowingStarted in ops&blue, now I hack for a living. SANS author/instructor in Oregon. Founder: https://t.co/c36tmCXDpt. He/him.
@[email protected]