Steve Borosh (@rvrsh3ll) 's Twitter Profile
Steve Borosh

@rvrsh3ll

The future is not set. There is no fate, but what we make for ourselves. - John Connor

ID: 1763744467797098496

linkhttps://futuresec.io calendar_today02-03-2024 01:53:59

3,3K Tweet

915 Takipçi

569 Takip Edilen

☣️ Mr. The Plague ☣️ (@dotnetrussell) 's Twitter Profile Photo

It slices it dices it ScreenShots, OCR's, detects, categorizes and even has its own super fast AI model 3 commands and your up and running Pipe the output to your favorite flavor of DB and start searching your screenshots github.com/DotNetRussell/…

Dirk-jan (@_dirkjan) 's Twitter Profile Photo

Since we now can use Entra ID connect sync with a service principal, I thought I'd look into the new security measures. On hosts without a TPM, we can dump the cert+key. On hosts with TPM (second picture) we can use the key to create an auth assertion for roadtx to req tokens.

Since we now can use Entra ID connect sync with a service principal, I thought I'd look into the new security measures. On hosts without a TPM, we can dump the cert+key. On hosts with TPM (second picture) we can use the key to create an auth assertion for roadtx to req tokens.
Matt Ehrnschwender (@m_alphaaa) 's Twitter Profile Photo

I'm finally releasing a project that I've been working on for a little while now. Here's Boflink, a linker for Beacon Object Files. github.com/MEhrn00/boflink Supporting blog post about it. blog.cybershenanigans.space/posts/boflink-…

nyxgeek (@nyxgeek) 's Twitter Profile Photo

Ever wonder if two companies are secretly working together? You might be able to find out! Azure user enumeration includes guest accounts. This means that if you have a list of email addresses, you can easily check to see if they exist in a specific Azure tenant.

Ever wonder if two companies are secretly working together? You might be able to find out!

Azure user enumeration includes guest accounts. This means that if you have a list of email addresses, you can easily check to see if they exist in a specific Azure tenant.
nyxgeek (@nyxgeek) 's Twitter Profile Photo

I released a tool a couple years back at DEF CON that lets you check if an email exists as a guest in a tenant. github.com/nyxgeek/guestl… You can include an AWS key for fireprox rotation (thnx Mike Felch (Stay Ready) !) as this endpoint is prone to false positives after 50-100 attempts.

Alex Neff (@al3x_n3ff) 's Twitter Profile Photo

NetExec now has native checks for LDAP signing and channel binding capabilities of the target DC, thanks to the implementation of Thomas Seigneuret 🚀 I also fixed querying LDAP with non-ASCII characters, so you can finally query groups such as "Dämonen-Administratoren"🎉

NetExec now has native checks for LDAP signing and channel binding capabilities of the target DC, thanks to the implementation of <a href="/_zblurx/">Thomas Seigneuret</a> 🚀

I also fixed querying LDAP with non-ASCII characters, so you can finally query groups such as "Dämonen-Administratoren"🎉
Fabian (@testert01) 's Twitter Profile Photo

Unconstrained Delegation on a gMSA and Webclient / NTLMv1 active on servers that can retrieve the credentials of a gMSA with unconstrained delegation can lead to a complete domain compromise from domain users. nothingspecialforu.github.io/UCgMSAExploita… Micah Van Deusen, Dirk-jan, nice tools :)

Steve Borosh (@rvrsh3ll) 's Twitter Profile Photo

"I love your vibe!" My favorite compliment to receive from locals here in Costa Rica. Typically given to me whilst dancing. Confirmation that I have found my tribe.

ϻг_ϻε (@steventseeley) 's Twitter Profile Photo

Nice blog post! I remember using a non-network exploit chain that was custom to VMWare for the pgsql jdbc attack :-> github.com/sourceincite/h…