Nulloop's profile picture. Sec ops tool-building wizard, thrives on detections and keyboard clacking.
+ https://c2sight.com
+ https://hackerjobs.com

Felix Jr.

@Nulloop

Sec ops tool-building wizard, thrives on detections and keyboard clacking. + https://c2sight.com + https://hackerjobs.com

Pinned

Do not go gentle into that good night, grandmother.

Nulloop's tweet image. Do not go gentle into that good night, grandmother.

Felix Jr. reposted

My @BSides_NoVA talk from Saturday was called “10 Ways to Improve Entra ID Security Quickly”. I focused on the areas that tend to be missed in Entra ID. Talk slides are now posted. Download the slides: adsecurity.org/?p=4799

PyroTek3's tweet image. My @BSides_NoVA  talk from Saturday was called “10 Ways to Improve Entra ID Security Quickly”. I focused on the areas that tend to be missed in Entra ID. Talk slides are now posted. 
Download the slides: adsecurity.org/?p=4799

Just got lvl 8 in Google reviews but honestly it’s a community service being done because there’s not benefit. I travel for food, culture, and experiences.

Nulloop's tweet image. Just got lvl 8 in Google reviews but honestly it’s a community service being done because there’s not benefit.

I travel for food, culture, and experiences.

Felix Jr. reposted

Microsoft Threat Intelligence has observed a financially motivated threat actor, Storm-2657, compromising employee accounts to gain unauthorized access to profiles and divert salary payments to attacker-controlled accounts. msft.it/6016s0hvp Storm-2657 is actively…

microsoft.com

Investigating targeted “payroll pirate” attacks affecting US universities | Microsoft Security Blog

Microsoft Threat Intelligence has identified a financially motivated threat actor that we track as Storm-2657 compromising employee accounts to gain unauthorized access to employee profiles and...


You can just build a service for yourself rather than destroy a great free product. There’s three URIs to hit. This is a function I created to do the enumeration.

Nulloop's tweet image. You can just build a service for yourself rather than destroy a great free product. There’s three URIs to hit. This is a function I created to do the enumeration.

As some dipsh*t is again enumerating the whole universe using #AADInternals #OSINT tool, the service is now closed until further notice.

DrAzureAD's tweet image. As some dipsh*t is again enumerating the whole universe using #AADInternals #OSINT tool, the service is now closed until further notice.


Felix Jr. reposted

Every lens leaves a blur signature—a hidden fingerprint in every photo. In our new #TPAMI paper, we show how to learn it fast (5 mins of capture!) with Lens Blur Fields ✨ With it, we can tell apart ‘identical’ phones by their optics, deblur images, and render realistic blurs.

estheroate's tweet image. Every lens leaves a blur signature—a hidden fingerprint in every photo.

In our new #TPAMI paper, we show how to learn it fast (5 mins of capture!) with Lens Blur Fields ✨

With it, we can tell apart ‘identical’ phones by their optics, deblur images, and render realistic blurs.

Detecting OAuth Token Compromise: Insights from the SalesLoft Drift Incident open.substack.com/pub/detections…


Felix Jr. reposted

This is actually a really solid context engineering template. Kudos, @AnthropicAI

mattpocockuk's tweet image. This is actually a really solid context engineering template.

Kudos, @AnthropicAI

The 3 maturity levels of Conditional Access: Good: Basic location-based blocks - ip, device trust Better: Risk-based adaptive policies - device compliance, App-specific protections More Better: Zero Trust architecture

The 3 maturity levels of Application Control... Good: Software Restriction Policies Better: AppLocker More Better: WDAC/3rd Party Solution



Neat and scary. Great work @bishopfox on the deepfake.


Felix Jr. reposted

If you support Firefox or Chrome in your environment, you need to enable these features if you want to use device identity in Conditional Access policies Without this, anything using filter for devices, compliance, or hybrid join requirements will likely fail

For Firefox, we need to enable Windows SSO as it is not enabled by default: mozilla.github.io/policy-templat… For Chrome, we need to enable CloudAP as it is not enabled by default: chromeenterprise.google/policies/#Clou…

NathanMcNulty's tweet image. For Firefox, we need to enable Windows SSO as it is not enabled by default:
mozilla.github.io/policy-templat…

For Chrome, we need to enable CloudAP as it is not enabled by default:
chromeenterprise.google/policies/#Clou…
NathanMcNulty's tweet image. For Firefox, we need to enable Windows SSO as it is not enabled by default:
mozilla.github.io/policy-templat…

For Chrome, we need to enable CloudAP as it is not enabled by default:
chromeenterprise.google/policies/#Clou…


Loading...

Something went wrong.


Something went wrong.