I defend the things that everyone is always trying to hack. Security operations, incident response, CTF's, marvel...mostly ironman, astro & quantum physics...
@ARosenmund There is at least a c2 / enumeration mechanism there....proxy service discovery through the services..my surprise was it doing it with a non standard port...but at worst...there is an RCE for one of those services waiting to be found.
GOAD v2 is out !
You can now test your AD commands and pentest skill on a multi-domain AD lab.
Have fun :)
https://t.co/Rpawi6FFl8
https://t.co/pKN8WwSDli
Often, I found myself repeating checklists of what to do for initial triage or "first responder" actions for incident response. Finally did this: https://t.co/fzokW9HGDK #cybersecurity#infosec#blueteam
PSA:. No amount of paper work, policy, and discussion of critical assets will ever protect your organization in cyberspace without a team to actually connect defensive assets on the network and execute a continuous monitoring plan. Not being "hands on keyboard" is not an option.