@Tw1sm and I did some Extended Protection for Authentication (EPA) research to enumerate when this protection will prevent your NTLM relay attacks, across multiple protocols.
We are also releasing RelayInformer - python and BOF implementations of these techniques.
🔗🧵
Nothing new, but formalized some operator notes on Entra ID/Azure tradecraft I've found to be exceptionally useful on ops. Overlooked this myself for quite some time and thought others in the same boat might find it worth a read! 📖
https://t.co/6f3Kb2UhHx
Worked through the CloudBreach Breaching AWS course and exam over the last two weeks. Didn't see a ton of info out there on it prior to buying the course so wrote a small review with my thoughts
https://t.co/evjXuKDwLR
Finally got around to bringing SQLRecon’s SCCM commands over to PySQLRecon. Threw together a brief post with the new update, demonstrating usage with ntlmrelayx for TAKEOVER-1
https://t.co/mf0LCBKVbN
https://t.co/bEUjRJ1emx
If your a Red Teamer and not looking for this👇your missing out! Got Domain Admin in 3 out of my last 4 engagements using this attack 🔥
AD Tip: Enforce LDAP Signing and Channel Binding to stay protected.
Took a while, but finally added the ability for BOFHound to parse session data and local group membership data from SA BOFs - details including usage examples in this post
https://t.co/iQLgv2Fdbg
@jadasimone_x14 Nooo it’s okay!!!! It’s all about balance!!!! Make sure you’re getting the food your body needs, but also the food it wants! Otherwise you’ll never be able to stick with it!!
One of the best password sprayers: spraycharles
- Target EWS & NTLM over HTTP endpoints with ease
- Smart delay periods to avoid account lockouts
- Detects valid logins via response analysis
- Bypass IP-based controls with proxy support
Try it 👇
https://t.co/MrT5eVBERL
Been playing with SQLRecon by @sanjivkawa to learn more about attacking SQL server - awesome tool in an area I haven’t scrutinized enough on tests for creds/lateral movement
Created a Python port, PySQLRecon, while labbing out the attack scenarios
⏩ https://t.co/bEUjRJ1emx
@dopaminefi3nd_ @DavidAlvesWeb Desk is amazing!!! Uplift (worth the price) - treadmill is just 2 and 1 superfit walking pad on Amazon! I’ve had it for over a year now and haven’t had any issues!!