Tomer Nahum
@tomernahum1
Security Researcher @SemperisTech
ID: 1564984604876054536
31-08-2022 14:33:11
67 Tweet
100 Followers
126 Following
Very happy to have made it to MSRC's 2024 Q2 leaderboard.🙂 Thanks Microsoft Security Response Center !
At TROOPERS Conference I dropped new research on #nOAuth, an abuse of #EntraID that allows you to spoof users in vulnerable SaaS applications. The attack is still alive and well. You can read all about it here: #Entra #M365 #infosec semperis.com/blog/noauth-ab…
Golden dMSA: One key to rule them all Just found a new flaw in Windows Server 2025's dMSAs that lets attackers brute-force ALL managed service account passwords with 1024 attempts. This research builds on the awesome research Golden gMSA (Yuval Gordon ). semperis.com/blog/golden-dm…
Going to release two new tools next week that will be showcased at Blackhat Arsenal USA 2025 and Defcon 33 Demo Labs 😃 1️⃣ EntraGoat - a deliberately vulnerable Entra ID environment - Built together with Jonathan Elkabas. 2️⃣ SAMLSmith - Built together with Eric Woodruff | MVP | CIDPRO
Happy to release SAMLSmith together with Eric Woodruff | MVP | CIDPRO - Generate forged SAML responses - Simulate Silver SAML & Golden SAML attacks - Extract usable certificate files from AD FS encrypted materials. The tool is written in C# Check it out here - github.com/Semperis/SAMLS…