@georgeguimaraes Pretty sure NIST says you need to force rotation when the Authenticator is compromised. Just being technical. They said to stop arbitrary age based
rotations, not rotations.
@Wakedxy1@DirectoryRanger Password reuse. IPMI exposed (with guessable username), lack of network segmentation, lack of protected users group membership… probably didn’t have LAPs… weak password policy… guessing we can find a few more in there. Nice work
Join @Krelkci & @Rev10D for their class "Active Directory Security and Hardening," at Wild West Hackin' Fest @ Mile High 2026! Don't ya go missin' it, grab yer tickets to the con today! --> https://t.co/QLA9JGyXWo
@techspence Teaching defensive mechanisms to offsec has been rewarding. More interested in the “how it works” than the why it’s important. Understnding the current capabilities/visibility of EDR/XDR drives offsec’s invisibility.
@wyoham Glen Rock? You got your power back already? Seems a bit bigger than that yeah? Anyway, stop hogging all the power bro and let the neighbors have some
@PrzemyslawKlys@EvotecIT “covering usage might be the more correct term. @PrzemyslawKlys — reach out if you want a copy of our lab where we use GPOZaur and Testimo. You guys are awesome!
@PrzemyslawKlys I’ve been including this in our Defending the Enterprise class for a couple years now. I imagine it’s been helpful for many orgs at this point. Keep up the awesome work!