Top Tweets for #GoldenSAML
🚨 Beware of Golden SAML Attacks!
Hackers can compromise AD FS, forge SAML tokens, and access your data.
In this issue of Attack Catalogue, learn how to Detect, Mitigate and Respond to Golden SAML Attack!
Read more: https://t.co/bU2l1eCoK0
#CyberSecurity #GoldenSAML

مایکروسافت یه گزارشی در خصوص فعالیت های اخیر APT منتسب به دولت ایران، Peach Sandstorm منتشر کرده که در این پست به بررسیش پرداختیم.
https://t.co/N6WwlOXCTx
#apt #PasswordSpray #GoldenSAML #امنیت_سایبری
Been wanting more Axon research? You're in luck.
We just published Part 2 of our piece on AD FS Threat Hunting.
We dive into the infamous #GoldenSAML exploit including effective methods of how to hunt and detect that activity.
Check it out here👇
https://t.co/4w18DrBbzE
The @BlackHatEvents #BHEU talk by me and @Cyb3rWard0g on how to prevent #ADFS #GoldenSAML attacks is now available on Youtube!
Video: https://t.co/9Q9Y7r7Ms0
Slides: https://t.co/aWzNAKUDvq

Finalising slide deck for my @WEareTROOPERS / #TROOPERS22 presentation "Eight ways to compromise AD FS certificates".
Can't wait to share the #ADFS attack graph details next week!!
#GoldenSAML #redteam #blueteam #cybersec #infosec

#Python library for dumping #ADFS database remotely + two amazing #GoldenSAML POCs out now 🔥
Brought to you by @nullg0re & @0xZDH from @Secureworks!
#redteam #blueteam #infosec
https://t.co/OCv1Pybnyi
1/ #APT Technique #GoldenSAML Attack (still RELEVANT) through compromising ADFS certificate and DKM.
Allows a TA FULL access over:
- O365 (Sharepoint, Teams etc)
- Azure/AD
- Defender Security Centre
Attacker can (if they have permissions) backdoor/modify/hijack azure apps
Great blog from my @Secureworks colleagues @nullg0re and @0xZDH 🔥
Going for the Gold: Penetration Testing Tools #Exploit #GoldenSAML
https://t.co/yWSGmPXQVu
Our #blackhat2021 slides (@MHamilis + YT) are now publicly available online from @BlackHatEvents website
Using @zengo tech to distribute SAML key generation and signing to prevent APT persistence with #GoldenSAML
https://t.co/HcadXKD9XS
#BHUSA

Following my pull request to @FireEye's ADFSDump, I've explained how to use the new flag to target MS SQL instead of WID, manually export a non-exportable token signing key, and then use the resultant certificate with ADFSpoof. #goldensaml
https://t.co/uudZ2j3KqS
A Q I had while working on my @BlackHatEvents presentation on solving Golden SAML with modern crypto. https://t.co/Rh0P0J2n8g
Why does @MITREattack classify #GoldenSAML only under "Credential Access" and not "Persistence"?
@talbeerysec explains the two main issues preventing defenders from applying the highly effective MFA approach to Golden Secrets: backward compatibility & lack of orthogonal additional factors, and how they are solved by their solution in this Briefing https://t.co/sYq3WaG1GL
Our team sounded the alarm on #GoldenSAML in 2017. Now our own Shaked Reiner tells @darkreading that once an attacker gets in the network w/ a privileged foothold, the damage can be limitless. Read more from Reiner on trust after Golden SAML-like attacks:
https://t.co/Irz0CTAFfo
@QOMPLX introduces detections for Cloud Identity Forgery, the only security solution available to automatically spot and stop a SAML attack. Let us help you secure your authentications on site and in the Cloud. #IdentitySecurity #SolarWinds #GoldenSAML https://t.co/fIlwMUwLHS

Back in the day (January/February) Threat Researched worked alongside @meansec and @mlaferrera and team to develop detections for #GoldenSAML when this was top of mind 😉. 1/4
Did you join us last week for a review on the #GoldenSAML technique? Learn what the CyberArk Labs team is saying ‘Solorigate’ means for attackers and defenders as digital supply chain attacks rise.
Watch the replay with @__Curi05ity__ and @R41nM4kr: https://t.co/fzja2FRbAl

Want to learn about the anatomy of the #SolarWinds attack path?
We're bringing together the team that discovered the #GoldenSAML attack vector 3 years ago to show you how it happened and what this means for attackers and defenders.
Register to join us: https://t.co/RUEMrrY4YT

Are you joining us today — it's not too late if you haven't registered yet!
Hear from the team that discovered the #GoldenSAML attack vector 3 years ago and learn how to prevent #attackers from getting a step ahead.
Register: https://t.co/NGElQVMtMN

New post - this time with a #goldensaml writeup
#cybersecurity #infosec #systems #dfir #solarwinds
https://t.co/ryNN1P3ZLL
With the #SolarWinds breach impacting over 18,000 victims, the @CyberArk Labs team recaps what Golden SAML is and explains why attackers want to use it.
Read more on #GoldenSAML here ➡️ https://t.co/m5bt4rHYUv
Most Popular Users

Elon Musk 
@elonmusk
241.1M followers

Barack Obama 
@barackobama
119.1M followers

Cristiano Ronaldo 
@cristiano
112.6M followers

Donald J. Trump 
@realdonaldtrump
111.8M followers

Narendra Modi 
@narendramodi
107.1M followers

Rihanna 
@rihanna
98.2M followers

NASA 
@nasa
92.2M followers

Justin Bieber 
@justinbieber
91.4M followers

KATY PERRY 
@katyperry
88.8M followers

Taylor Swift 
@taylorswift13
82.7M followers

Lady Gaga 
@ladygaga
74.2M followers

Virat Kohli 
@imvkohli
71.7M followers

Kim Kardashian 
@kimkardashian
70.3M followers

YouTube 
@youtube
68.7M followers

Neymar Jr 
@neymarjr
64.6M followers

Bill Gates 
@billgates
64.5M followers

The Ellen Show
@theellenshow
62.4M followers

Selena Gomez 
@selenagomez
61.9M followers

CNN 
@cnn
61.8M followers

X 
@x
60.8M followers












