Sean Metcalf (@pyrotek3) 's Twitter Profile
Sean Metcalf

@pyrotek3

Identity Security Architect @ TrustedSec. Microsoft Certified Master #ActiveDirectory & former Microsoft MVP. He/Him. #BLM

ID: 2730681163

linkhttps://www.adsecurity.org calendar_today14-08-2014 01:09:57

21,21K Tweet

34,34K Followers

599 Following

spencer (@techspence) 's Twitter Profile Photo

File share fail: assigning permissions to “Domain Users” or “Authenticated Users”. Here’s what to do instead… Create dedicated security groups Add only the users who need access Apply permissions to the group, not everyone

Sam Erde (@samerde) 's Twitter Profile Photo

The Microsoft Entra PowerShell module team has released v1.0.8 which resolves a few issues and feature requests. Check the release notes and go get it! github.com/microsoftgraph…

The Microsoft Entra PowerShell module team has released v1.0.8 which resolves a few issues and feature requests. Check the release notes and go get it!
github.com/microsoftgraph…
Tanya Janca | Shehackspurple (@shehackspurple) 's Twitter Profile Photo

It’s #CyberMentoringMonday!!!! Are you looking for a professional mentor or to learn more about InfoSec? Are you experienced and willing to ‘give back’? Use this thread and hashtag to connect!

TrustedSec (@trustedsec) 's Twitter Profile Photo

The new episode of #SecurityNoise is out now! This week, we are talking to Sean Metcalf about #ActiveDirectory, common challenges in the identity security space, frequently seen #pentest findings, and more. Listen now or watch on YouTube! trustedsec.com/resources/podc…

Ramit Sethi (@ramit) 's Twitter Profile Photo

Using the following phrases: "I'm bad at money" "I'm bad at math" "You should handle our money. You're so much better at it"

Using the following phrases:

"I'm bad at money"
"I'm bad at math"
"You should handle our money. You're so much better at it"
Dave Kennedy (@hackingdave) 's Twitter Profile Photo

My advice to kids has changed recently and it's not to get a cybersecurity degree. Get a computer science one, with a specialization in AI or an AI solely degree. I feel like right now, the cybersecurity market is pretty rough on hiring folks in - and that's only going to get

Justin Elze (@hackinglz) 's Twitter Profile Photo

And the most important part "Please keep in mind that in its current state, the MCP server is just for use with Claude Desktop, implying that any data contained within the BloodHound host that the MCP accesses is sent to Anthropic. Please do not send production data to

John Lambert (@johnlatwc) 's Twitter Profile Photo

Some recent quotes that stuck with me: · "It’s always a no if you don’t ask" · "If you’re lost, the answer is education. If you’re educated, the answer is execution. If you’re executing, the answer is consistency" · "Learn one level deeper than you think necessary to be

Nathan McNulty (@nathanmcnulty) 's Twitter Profile Photo

It looks like Okta finally added support for Entra External Authentication Method (EAM)! 🎉 help.okta.com/oie/en-us/cont… This allows Okta Verify to meet Conditional Access "Require MFA" requirements, no more custom controls! So let's do a thread on how to set this :)

It looks like Okta finally added support for Entra External Authentication Method (EAM)! 🎉

help.okta.com/oie/en-us/cont…

This allows Okta Verify to meet Conditional Access "Require MFA" requirements, no more custom controls!

So let's do a thread on how to set this :)
Brian in Pittsburgh (@arekfurt) 's Twitter Profile Photo

A quietly significant change in Active Directory.... MS explains that this is necessary to make Windows actually fully honor settings not to use RC4 and for MS to deprecate DES and RC4 usage in the years to come.

TrustedSec (@trustedsec) 's Twitter Profile Photo

Verbose error messages might be useful, but they can reveal too much. In our latest blog, nyxgeek shows how a now-fixed #Azure logging bug could have allowed attackers to confirm valid passwords, despite failed logins. Read now! trustedsec.com/blog/full-disc…

Sean Metcalf (@pyrotek3) 's Twitter Profile Photo

During our Active Directory Security Assessments, we do find Google Chrome and other browsers installed on Domain Controllers occasionally. Please don't use your DC for web browsing.

Dirk-jan (@_dirkjan) 's Twitter Profile Photo

Received the news today that my talk "Advanced Active Directory to Entra ID lateral movement techniques" was also accepted for DEF CON 🎉 hope to see everyone there!