
Clément Notin
@cnotin
😈 Security research (#ActiveDirectory #EntraID) & pentest 🎉 #CTF @tipi_hack 👨💼 Works @TenableSecurity, opinions my own 🪂 infosec.exchange/@cnotin
ID: 247974619
https://clement.notin.org/ 06-02-2011 00:11:31
8,8K Tweet
5,5K Followers
959 Following


Good occasion to remind that Windows Server 2025 domain controllers can prevent this with the new GPO setting "Domain controller: Refuse setting default machine account password". See: learn.microsoft.com/en-us/windows-… Except for machines which already have such a default password...




Last year I suggested Security Response to mark some Entra permissions as privileged. They disagreed. medium.com/tenable-techbl… Thankfully, it was fixed anyway a while later 👌 - microsoft.directory/domains/allProperties/allTasks - microsoft.directory/domains/federation/update



Great talk by Martin Haller on supply-chain attacks between Entra tenants 👏 The techniques aren't new, but showing a script (yeah a real one, no AI needed) able to automatically exploit these lateral movement and backdooring techniques is scary😨 youtube.com/watch?v=QF6HOA…


👨🎓 Just attended the "Adversary Tactics: Identity-Driven Offensive Tradecraft" training from SpecterOps! 🤯 It’s an intense course (that hurts!) on identity-focused attack paths, packed with knowledge and nice labs 💡 Highly recommend! specterops.io/training/ident…

Nice Kerberos tricks by CCob🏴 👌
