infosec_bankai's profile picture.

Infosec Bankai

@infosec_bankai

Infosec Bankai hat repostet

Twitch.tv got leaked. Like, the entire website; Source code with comments for the website and various console/phone versions, refrences to an unreleased steam competitor, payouts, encrypted passwords that kinda thing. Might wana change your passwords.


Infosec Bankai hat repostet

1\ I updated the attacks on #AzureAD and #M365 matrix! Now includes hybrid/non hybrid techniques used for impersonation, persistence and access including: > Silver Tickets > Pass the PRT / Cert > Service principal abuse > Identity federation abuse bit.ly/3F9CXM4

inversecos's tweet image. 1\ I updated the attacks on #AzureAD and #M365 matrix!  Now includes hybrid/non hybrid techniques used for impersonation, persistence and access including:

> Silver Tickets 
> Pass the PRT / Cert

>  Service principal abuse

> Identity federation abuse

bit.ly/3F9CXM4

Infosec Bankai hat repostet

The "printer bug" has been one of the more useful attack primitives we've used in the last 4 years, it now returns with a vengeance!

4 years ago I found "the printer bug", but couldn't convert it into instant domain escalation. Using ESC8 from posts.specterops.io/certified-pre-…, you can do just that. Defenders/PKI admins: Check if your AD CS HTTP endpoints are vulnerable. PSPKIAudit can help: github.com/GhostPack/PSPK…



Infosec Bankai hat repostet

I'm feeling generous tonight ☺️ I'm giving away 100 FREE subscriptions for LiveOverflow!! Please retweet to spread the word! youtube.com/c/LiveOverflow…


Infosec Bankai hat repostet

Securing Windows Workstations: Developing a Secure Baseline. A collection of the best methods to secure Windows adsecurity.org/?p=3299

PyroTek3's tweet image. Securing Windows Workstations: Developing a Secure Baseline.
A collection of the best methods to secure Windows
adsecurity.org/?p=3299

Infosec Bankai hat repostet

For real haha #worldseries


Loading...

Something went wrong.


Something went wrong.