#SpecterOps shows how legitimate #MSSQL & #SCCM roles can lead to full admin. This isn’t a #0day problem - it’s a privilege design failure. Least-privilege still matters.
https://t.co/qfonbblRTJ
#TenRoot indicates that multiple Falcon EDR deployments unexpectedly transitioned into Reduced Functionality Mode (RFM) following recent Microsoft updates. Notably, this behavior appears to have gone undetected by CrowdStrike to date.#CyberSecurity#Microsoft
Microsoft January 2026 Security Updates 2026-01 B cause CrowdStrike Falcon agent to enter RFM (Reduced functionality Mode)
#microsoft#update#CrowdStrike#Falcon#RFM
Stop guessing if a user clicked a link!
UrlThreatScanner automates the "User Browse Trace" workflow -
Dumps local browser history (NirSoft engine)
Checks URLs against active malware feeds
Reports hits in seconds
Open Source & ready for IR: https://t.co/aYKkBR016i
#InfoSec#DFIR
Regular reminder… this hardening series by Jerry Devore is super awesome. There’s no way you won’t learn things by reading these.
Part 1 - Disabling NTLMv1
Part 2 - Removing SMBv1
Part 3 - Enforcing LDAP Signing
Part 4 - Enforcing AES for Kerberos
Part 5 - Enforcing LDAP Channel Binding
Part 6 - Enforcing SMB Signing
Part 7 - Implementing Least Privilege
Link to all articles 👇
https://t.co/JNDMfVqoDP