Dirk-jan(@_dirkjan) 's Twitter Profileg
Dirk-jan

@_dirkjan

Hacker at @OutsiderSec. Researches AD and Azure (AD) security. Likes to play around with Python and write tools that make work easier.

ID:941023122517647361

linkhttp://dirkjanm.io calendar_today13-12-2017 19:12:50

1,7K Tweets

25,1K Followers

173 Following

Martin Sohn(@martinsohndk) 's Twitter Profile Photo

Thanks to Dirk-jan and all co-students in Dirk-jan's offensive Entra ID & hybrid AD course. It's highly recommended and definitely increased my interest in Entra/Azure!
Next is the last day of Insomni'hack and some extra days in beautiful Switzerland!

account_circle
LuemmelSec(@theluemmel) 's Twitter Profile Photo

That’s a wrap.
Really worth it and absolutely recommended if you want to get your hands dirty with everything token related when it comes to the MS cloud.
Thanks for being a cool teacher and just a friendly dude Dirk-jan

That’s a wrap. Really worth it and absolutely recommended if you want to get your hands dirty with everything token related when it comes to the MS cloud. Thanks for being a cool teacher and just a friendly dude @_dirkjan
account_circle
Dirk-jan(@_dirkjan) 's Twitter Profile Photo

Current status: having to explain why I would need more than the unannounced, undocumented, new limit of 5 automation accounts per subscription... Why all my runbooks fail is still a mystery. Frustrating to say the least.

account_circle
ap(@decoder_it) 's Twitter Profile Photo

'Hello: I'm your Domain Administrator and I want to authenticate against you'. My is out, check the blog post: decoder.cloud/2024/04/24/hel… 😃

account_circle
Dirk-jan(@_dirkjan) 's Twitter Profile Photo

The agenda for this years x33fcon looks 🔥. It's a great conference so if you can, grab one of the last available tickets :)

account_circle
Evan McBroom(@mcbroom_evan) 's Twitter Profile Photo

I just published a blog and tool for the LSA Whisperer work that was presented at the SpecterOps Conference (SOCON) back in March.

If you are interested in getting credentials from LSASS without accessing its memory, check it out!
medium.com/specter-ops-po…

account_circle
Dirk-jan(@_dirkjan) 's Twitter Profile Photo

Hey Azure Support, why am I suddenly running into undocumented limits of 5 automation accounts per subscription and do all the runbook jobs I submit return rate limit errors? I've previously been using the same deployment over a year without issues...

account_circle
Area41 Security Con(@a41con) 's Twitter Profile Photo

the CallForPaper for conference is open!
Submit your best technical research to be a part of this conference🤓
⏳You got till April-24⌛️


area41.stfn.ch/2024/

the CallForPaper for #AREA41 conference is open! Submit your best technical research to be a part of this conference🤓 ⏳You got till April-24⌛️ #dc4131 area41.stfn.ch/2024/
account_circle
Akamai Security Intelligence Group(@akamai_research) 's Twitter Profile Photo

Can a DHCP administrator become a domain administrator? Well, as it turns out, sometimes it sure can. 🥴

In our latest blog post, see how Akamai researchers discovered a new PrivEsc technique affecting Active Directory.

Full write-up:
akamai.com/blog/security-…

Can a DHCP administrator become a domain administrator? Well, as it turns out, sometimes it sure can. 🥴 In our latest blog post, see how Akamai researchers discovered a new PrivEsc technique affecting Active Directory. Full write-up: akamai.com/blog/security-…
account_circle
Adam Chester 🏴‍☠️(@_xpn_) 's Twitter Profile Photo

New blog post is up... Identity Providers for RedTeamers. This follows my talk, and provides the technicals behind the presentation, looking at other IdP's and what techniques are effective beyond Okta. blog.xpnsec.com/identity-provi…

account_circle
Dirk-jan(@_dirkjan) 's Twitter Profile Photo

I've always recommend the free Microsoft 365 developer subscription as a great way to learn. Having it locked behind a 600 EUR to 3k EUR minimum cost is going to hurt Identity Security learning capabilities for everyone. Very sad to see it like this.
devblogs.microsoft.com/microsoft365de…

account_circle
b33f | 🇺🇦✊(@FuzzySec) 's Twitter Profile Photo

I'm so excited today to announce that I'm launching my own online training platform Calypso Heavy Industries (CHI) 🎊

The first course to appear on Labs is 'Windows Instrumentation with Frida', check it out:
labs.calypso.pub/windows-instru…

Labs is partnering with Vector 35, when you sign up you get a…

I'm so excited today to announce that I'm launching my own online training platform @CalypsoLabs 🎊 The first course to appear on Labs is 'Windows Instrumentation with Frida', check it out: labs.calypso.pub/windows-instru… Labs is partnering with @vector35, when you sign up you get a…
account_circle
Insomni'hack(@1ns0mn1h4ck) 's Twitter Profile Photo

🚨📢 Insomni'hack 2024

We have some important news for you...

💻🛡️The program of conferences has been released : ow.ly/usaY50QPZHR

👉Details and registration: ow.ly/26nq50QPZHS

We look forward to seeing you very soon.

🚨📢 Insomni'hack 2024 We have some important news for you... 💻🛡️The program of conferences has been released : ow.ly/usaY50QPZHR 👉Details and registration: ow.ly/26nq50QPZHS We look forward to seeing you very soon. #INSO24 #CTF #cybersecurity #event
account_circle
Roberto Rodriguez 🇵🇪(@Cyb3rWard0g) 's Twitter Profile Photo

📢 Thrilled to be teaching with Thomas Roccia 🤘 at Black Hat 🌟

🚀 Boost your career by learning how to apply Python & Generative to . From the basics to building your own LLM-based Agents 🤖 Security

✅ Secure your spot blackhat.com/us-24/training…
👉 More info…

📢 Thrilled to be teaching with @fr0gger_ at @BlackHatEvents #BHUSA 🌟 🚀 Boost your career by learning how to apply Python & Generative #AI to #CTI. From the basics to building your own LLM-based Agents 🤖 #AISecurity ✅ Secure your spot blackhat.com/us-24/training… 👉 More info…
account_circle
rootsecdev(@rootsecdev) 's Twitter Profile Photo

My new blog has arrived. A lot of what is in here mimics APT29 (Midnight Blizzard) Tradecraft. Some good nuggets also on using Evilginx development mode for phishlet development if you don’t want to expose a VPS. Enforcing cloud native in Entra ID? I got you covered with a…

account_circle
Nick Ludwig(@welcome2theDL) 's Twitter Profile Photo

Ru Campbell Kenneth van Surksum - MVP rootsecdev Dirk-jan Deployment timelines for getting this to public preview went a little faster than expected - working on getting the docs changes merged ASAP. Should be available by end of the day😅

account_circle
ap(@decoder_it) 's Twitter Profile Photo

Hello: I'm your ADCS server and I want to authenticate against you. My latest Post and PoC are out. You can read it here: decoder.cloud/2024/02/26/hel… Enjoy :)

account_circle