Last day to get the online training bundle by @pluralsight. A friend bought his on Friday, liked the first course and reminded me that it's not much time left.
Harden and understand the Kubernetes security controls of EKS from @snyksec. This is a good summary about logging, API flags, metadata service exposure, and IAC security. Looking forward to their "advanced hardening" post as well. Via @lancinimarco
https://t.co/dHkRVvc3Dc
Top 16 Active Directory Vulnerabilities
This article provides practical information on how to pentest Active Directory environments using a list of 16 most common AD vulnerabilities and mis-configurations.
#pentest#infosec#redteam
https://t.co/FHJAvwWTEv
At @Lares_ we focus on using offensive security capabilities to inform and improve defenses. @Antonlovesdnb identified that many of our clients struggle with using SYSMON to close detection gaps and created SysmonConfigPusher for @msftsecurity https://t.co/K6IURBk2lc
Following @zseano talk on #NahamCon2021 I have decided to share my already crafted research on the entire Google TLD domains scraped from OSINT sources, everything on the trello board is in GoogleVRP scope.
Go crash it!
https://t.co/Cvw9Cd540P
#BugBountyTips#BugBounty
@roughwire I think so. Keeping up with a fast-paced profession, family and other matters is a very stressing thing. I feel it myself and under constant pressure of doing more and more than I currently do.