NTLM relay is still a major threat and is now even easier to abuse. We just added new NTLM relay edges to BloodHound to help defenders fix and attackers think in graphs.
Read my detailed post - the most comprehensive guide on NTLM relay & the new edges:
https://t.co/6MnmlzVjNq
Just got banned from the @TCMSecurity Discord server. What happened?
- I went in asked questions about the issue after talking to the person who got banned
- Posted a couple memes to see how they would react
- Compared TCM to CompTIA
- Asked one of the staff members to talk
- Got muted
- Asked if I got muted
- Got banned.
Just fyi, @deepseek_ai collects your IP, keystroke patterns, device info, etc etc, and stores it in China, where all that data is vulnerable to arbitrary requisition from the 🇨🇳 State.
From their own privacy policy:
We are seeing large numbers of sources scanning for RDP services - especially port 1098/TCP (!) - in our honeypot sensors last 2 weeks (up to 740 000 (!) distinct source IPs daily, incl up to 405 000 from Brazil).
Tracker: https://t.co/KVQL03FvHG
Map: https://t.co/iEnhb8uhpP
Excited to announce a new giveaway, thanks to @PentesterLab.
We will pick 10 winners to win 6 month (x5) and 1 month (x5) subscriptions.
To enter:
1️⃣ Follow us @BugBountyDefcon and @PentesterLab
2️⃣ Like this post ❤️
3️⃣ RT this post 🔁
You've time until next Friday (10/18), GO!
🌟80% discount on our star exam - The Certified AppSec Pentester (CAPen) exam! 🌟
*** 𝗟𝗶𝗸𝗲, 𝗮𝗻𝗱 𝗥𝗲𝘀𝗵𝗮𝗿𝗲 𝘁𝗼 𝘄𝗶𝗻 𝗮 𝗳𝗿𝗲𝗲 𝗖𝗔𝗣𝗲𝗻 𝗲𝘅𝗮𝗺 ***
3 lucky winners will receive a FREE exam! ✔️
📍𝗨𝘀𝗲 𝗽𝗿𝗼𝗺𝗼 𝗰𝗼𝗱𝗲 𝗳𝗼𝗿 𝟴𝟬% 𝗱𝗶𝘀𝗰𝗼𝘂𝗻𝘁 - CAPen-80-OFF
⭐ What is CAPen?
Certified AppSec Pentester (CAPen) is an intermediate-level professional pentesting exam to test a candidate’s knowledge of the core concepts involving application security. Candidates must be able to demonstrate practical knowledge to conduct an application pentest to pass this exam.
⭐What is the exam format?
CAPen is an intense 4-hour long practical exam. It requires candidates to solve several challenges, identify and exploit various vulnerabilities, and obtain flags.
🎯Who should consider CAPen?
· Pentesters
· Application Security Architects
· SOC Analysts
· Red and Blue Team Members
· AppSec Enthusiasts
𝙋.𝙨 - @SynackRedTeam '𝙨 𝙋𝙖𝙩𝙝𝙬𝙖𝙮: 𝘾𝘼𝙋𝙚𝙣 𝙞𝙨 𝙮𝙤𝙪𝙧 𝙧𝙤𝙪𝙩𝙚 𝙩𝙤 𝙢𝙚𝙚𝙩𝙞𝙣𝙜 @synack ’𝙨 𝙚𝙨𝙩𝙚𝙚𝙢𝙚𝙙 𝙘𝙧𝙞𝙩𝙚𝙧𝙞𝙖.
For more information on the exam, please visit -https://t.co/VLrU3hQcPv
#capen #webapplicationsecurity #appsec #pentestingexam
September giveaway! I am giving away 1 seat each for @AlteredSecurity on-demand CRTP and AD CS courses. Please Reply, Repost and Like this post to participate.
I will announce 1 random winner for each on 30th September.
https://t.co/LP2i5SMg0v
Make sure to reply with which one would you like to win.
#RedTeam #Pentesting #Giveaway