Clay (@0xclayhax) 's Twitter Profile
Clay

@0xclayhax

ID: 823676494983499777

calendar_today23-01-2017 23:39:14

750 Tweet

579 Followers

788 Following

Clay (@0xclayhax) 's Twitter Profile Photo

I just pwned Certificate on Hack The Box! hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

Clay (@0xclayhax) 's Twitter Profile Photo

I just pwned TombWatcher on Hack The Box! hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

Synacktiv (@synacktiv) 's Twitter Profile Photo

Microsoft just released the patch for CVE-2025-33073, a critical vulnerability allowing a standard user to remotely compromise any machine with SMB signing not enforced! Checkout the details in the blogpost by Guillaume André and Wil. synacktiv.com/publications/n…

Clay (@0xclayhax) 's Twitter Profile Photo

I just pwned Artificial on Hack The Box! labs.hackthebox.com/achievement/ma… #HackTheBox #htb #CyberSecurity #EthicalHacking #InfoSec #PenTesting

Chris Thompson (@_mayyhem) 's Twitter Profile Photo

I'm SO hyped to finally make MSSQLHound public! It's a new BloodHound collector that adds 37 new edges and 7 new nodes for MSSQL attack paths using the new OpenGraph feature for 8.0!. Let me know what you find with it! - github.com/SpecterOps/MSS… - specterops.io/blog/2025/07/2…

I'm SO hyped to finally make MSSQLHound public! It's a new BloodHound collector that adds 37 new edges and 7 new nodes for MSSQL attack paths using the new OpenGraph feature for 8.0!. Let me know what you find with it!
- github.com/SpecterOps/MSS…
- specterops.io/blog/2025/07/2…
@zephrfish.yxz.red (@zephrfish) 's Twitter Profile Photo

Here's an initial release of a LDAP browser written in python with a nice GUI and some integrations with #BloodHound github.com/ZephrFish/pyLD…

Cloudflare (@cloudflare) 's Twitter Profile Photo

On November 18 Cloudflare experienced a service outage, triggered by an issue with a Bot Management feature, impacting multiple Cloudflare services. Here's a detailed breakdown of what happened. cfl.re/43Bw8AI

Alex Neff (@al3x_n3ff) 's Twitter Profile Photo

Dumping juicy secrets from SAM/LSA is always nice right? I've added an implementation for the --sam and --lsa flags to the MSSQL protocol of NetExec🚀 No need for manual registry hive extraction anymore!

Dumping juicy secrets from SAM/LSA is always nice right?
I've added an implementation for the --sam and --lsa flags to the MSSQL protocol of NetExec🚀

No need for manual registry hive extraction anymore!
Black Hills Information Security (@bhinfosecurity) 's Twitter Profile Photo

"[...] Kerberos delegation is easily among my top favorite vectors of abuse, and [...] I’ve noticed that Impacket doesn’t get nearly as much coverage as tools like Rubeus or Mimikatz. Read more: blackhillsinfosec.com/abusing-delega… Abusing Delegation with Impacket (Part 1): Unconstrained

"[...] Kerberos delegation is easily among my top favorite vectors of abuse, and [...] I’ve noticed that Impacket doesn’t get nearly as much coverage as tools like Rubeus or Mimikatz.
Read more: blackhillsinfosec.com/abusing-delega…

Abusing Delegation with Impacket (Part 1): Unconstrained
TrustedSec (@trustedsec) 's Twitter Profile Photo

What's the future of #AI? In our next #webinar, our experts will discuss: 🔮 Future AI Trends 🐋 Emerging Threats 🏆 AI-Driven Solutions And so much more. Secure your spot and join us next week! hubs.la/Q041M7_D0 Dave Kennedy Justin Elze Paul Sems

What's the future of #AI? In our next #webinar, our experts will discuss:
🔮 Future AI Trends
🐋 Emerging Threats
🏆 AI-Driven Solutions
And so much more. Secure your spot and join us next week! 
hubs.la/Q041M7_D0
<a href="/HackingDave/">Dave Kennedy</a> <a href="/HackingLZ/">Justin Elze</a> <a href="/paulsems/">Paul Sems</a>
SpecterOps (@specterops) 's Twitter Profile Photo

Happy #BloodHoundBasics Friday w/ Martin Sohn! Did you know the BloodHound Query Library now includes a ZIP of all queries in Releases on GitHub for bulk importing? No more copying queries one by one—grab & import the whole collection in seconds! 🧵: 1/3

Happy #BloodHoundBasics Friday w/ <a href="/martinsohndk/">Martin Sohn</a>!

Did you know the BloodHound Query Library now includes a ZIP of all queries in Releases on GitHub for bulk importing?

No more copying queries one by one—grab &amp; import the whole collection in seconds!

🧵: 1/3
Graham Helton (@grahamhelton3) 's Twitter Profile Photo

Kubernetes is one of the pieces of infrastructure most companies are using, but rarely gets evaluated by offsec teams. The attack surface is MASSIVE. Next week I'll be spilling the tea on how to start researching these attack paths yourself! Hope to see you there.

Microsoft Threat Intelligence (@msftsecintel) 's Twitter Profile Photo

Microsoft Defender researchers observed attackers using yet another evasion approach to the ClickFix technique: Asking targets to run a command that executes a custom DNS lookup and parses the `Name:` response to receive the next-stage payload for execution.

Microsoft Defender researchers observed attackers using yet another evasion approach to the ClickFix technique: Asking targets to run a command that executes a custom DNS lookup and parses the `Name:` response to receive the next-stage payload for execution.