Rene Freingruber
@renefreingruber
Interested in reversing, browser exploitation, red & blue teaming, web vulns, ...
ID: 618045040
25-06-2012 12:09:23
5,5K Tweet
3,3K Takipçi
572 Takip Edilen
Credential Guard was supposed to end credential dumping. It didn't. Valdemar Carøe just dropped a new blog post detailing techniques for extracting credentials on fully patched Windows 11 & Server 2025 with modern protections enabled. Read for more ⤵️ ghst.ly/4qtl2rm
Forget common backdoors — a DLL hijack in Windows Narrator can grant SYSTEM-level persistence at login. In our new blog, Oddvar Moe shows how attackers abuse accessibility features and what defenders should monitor. Read now! trustedsec.com/blog/hack-cess…
See your network shares the way attackers do. 👀 Meet ShareHound, an OpenGraph collector for BloodHound CE & Enterprise that reveals share-level attack paths at scale. Rémi GASCOU (Podalirius) unpacks all the details in our latest blog post. ghst.ly/4ogiBqt
AdminSDHolder: the AD security feature everyone thinks they understand but probably don't. 😬 Jim Sykora went to the source code to debunk decades of misconceptions — including ones in Microsoft's own docs. Read more ⤵️ ghst.ly/3Lpmjzv
Voleur is an assume breach active directory box from Hack The Box. It has lots of passwords, deleted user recovery, DPAPI, targeted kerberoasting, and hashes from registry hives. 0xdf.gitlab.io/2025/11/01/htb…