New blog post: Tear Down The Castle - Part 2
dfir.ch/posts/tear_dow…
I analyzed 250 PingCastle Reports, grouping the findings along the categories I used for my 10 AD Commandments series.
The number of affected domains is stated within each finding, i.e., in how many domains we…
Many missed this on #BadSuccessor: it’s also a credential dumper.
I wrote a simple PowerShell script that uses Rubeus to dump Kerberos keys and NTLM hashes for every principal-krbtgt, users, machines. no DCSync required, no code execution on DC.
Microsoft has released its own document parser for LLM use!
.
.
Introducing MarkItDown, a 100% open-source, one-stop solution for effortlessly converting any file to Markdown—perfect for text analysis, indexing, and more!
Here’s what makes it special:
↳ Converts PDF, Word,…
Kudos to @DragosInc for sharing details of a recent event. The adversary compromised a new employee's personal email address and impersonated them to get access. How would you protect against that?
Kudos to @DragosInc for sharing details of a recent event. The adversary compromised a new employee's personal email address and impersonated them to get access. How would you protect against that?
I remember a time when people here in Europe still had issues storing their corporate emails on US mail servers - nowadays you store the master keys to your company on their servers
🎵 … for the times they are a-changin'
I remember a time when people here in Europe still had issues storing their corporate emails on US mail servers - nowadays you store the master keys to your company on their servers
🎵 … for the times they are a-changin'
[Android] Une trentaine de "Privacy Friendly Apps" proposées par @SECUSOResearch qui :
- are Open Source (GPLv3) and their source code can be viewed an Github by anybody
- used minimal permissions
- do not neither tracking mechanisms nor advertisement
secuso.aifb.kit.edu/english/105.php
Unable to extract credentials via DPAPI or Mimikatz? Don't worry. Microsoft got your back. Just use 'rundll32 keymgr.dll, KRShowKeyMgr' to extract all the stored passwords on the host, be it a target server, FTP or chrome's HTTP creds, microsoft has you covered. #redteam
GitHub - claroty/arya: Arya is a unique tool that produces pseudo-malicious files meant to trigger YARA rules. You can think of it like a reverse YARA. github.com/claroty/arya
New: North Korea has taken a page out of China's cyber playbook to reorganize and consolidate its threat groups within the government - making them “extremely mobile now that they’ve consolidated.” Here's a first look at their new org structure 👇
mandiant.com/resources/mapp…
The 2022 Threat Detection Report is out! Join us in counting down the most prevalent threats we encountered in our customers' environments last year. We'll reveal a new threat every hour in this thread (Or just download the report & see them all now) redcanary.com/resources/guid…
Our statement in regard to the warning of German Federal Office for Information Security (BSI)
Unser Statement zur Warnung des Bundesministeriums für Sicherheit in der Informationstechnik (BSI)
46 Followers 451 Followingje suis disponible pour des rencontres Sexuelle douce coquine envoyé moi message sur télégramme mon prénom télégramme c'est : @arianeco
1K Followers 2K Followinghttps://t.co/YAhqH2ncLO was founded in 1997 to support the African cultures in Cuba. https://t.co/YAhqH2ncLO fue fundado en 1997 para apoyar las culturas africanas de Cuba.
917 Followers 5K FollowingIncident Response at MDR. DFIR, Threat Hunting, and Threat Intel. 🇺🇦🇺🇸. *Everything said here is my own opinion not that of my employer
1K Followers 2K FollowingGentil Hacker, RSSI, auteur du "Guide du survie au cybercrime en entreprise" et wanna-be vulgarisateur
Membre @cafe_sciences @CEFCYS_Officiel
318K Followers 74 FollowingKaspersky is the world’s largest privately held vendor of Internet security solutions for businesses and consumers. For support https://t.co/enRPRUIwcm
8K Followers 530 FollowingThreat Intel researcher! Technical tweets only; not reflective of employer's views. No endorsement of political groups/entities.
40K Followers 179 FollowingThe nonprofit dedicated to stewarding the Rust programming lang & its community 🦀
bsky: https://t.co/pURKYFM3az Mastodon: rustfoundation
14K Followers 22 FollowingNational Cyber Security Centre (NCSC), Computer Security Incident Response Team of the Swiss Government (https://t.co/S9JncbbeYk)
1K Followers 589 FollowingVP of Strategic Alliances @nozominetworks; previously industrial automation engineer, system integrator and sales engineer. Tweets are my own own opinon.
19K Followers 2K FollowingCommuns numériques et libre éducatif à @Edu_Num CM du compte officiel @LeLibreEdu fondateur #Framasoft prof de maths et papa de fiston @[email protected]
7K Followers 105 FollowingMicrosoft MVP since '07 & Microsoft RD since '15, CTO & Director Cybersecurity at @Wortell, Founder of @experts_live, #DutchSecurityMeetup and #AzureAPE.
60K Followers 1K FollowingSecurity information portal, testing and certification body.
Organisers of the annual Virus Bulletin conference. @[email protected]
12K Followers 16 FollowingAssociation OSINT-FR | Communauté dédiée à l'Open Source Intelligence. Événements, apprentissage et collaborations autour des pratiques liées à l'OSINT.
71K Followers 1K FollowingWIRED writer, author of SANDWORM and now TRACERS IN THE DARK: The Global Hunt for the Crime Lords of Cryptocurrency. Andy.01 on Signal. [email protected]