Want to detect Kerberoasting with no false positives?
Setup a honeypot account for detection following the guidance in this article:
https://t.co/2OjBvxbp6R
#ActiveDirectorySecurityTip
Microsoft forgot to include the hashes of the RDP files and I wrote a YARA rule to detect them
Hashes
db326d934e386059cc56c4e61695128e
40f957b756096fa6b80f95334ba92034
f58cf55b944f5942f1d120d95140b800
b38e7e8bba44bc5619b2689024ad9fca
e1d7de6979c84a2ccaa2aba993634c48
f7e04aab0707df0dc79f6aea577d76ea
48ed82f14472518251086afc26d886ea
3d7e2ee43faf15c1776aa0277db1c2a5
280ab6fa6087c57b43cd5ac6c257082c
YARA rule
https://t.co/65IWRJOFta
It'll be available in THOR Lite and THOR Cloud Lite in 1h:20m
"...I've been carrying her for an hour and I can't take it anymore."
A Palestinian girl from Gaza carried her injured sister on her back, barefoot, to return to Bureij refugee camp for treatment.
😬😬😬😬
“Microsoft has notified customers that it’s missing more than two weeks of security logs for some of its cloud products, leaving network defenders without critical data for detecting possible intrusions.”
https://t.co/gU7fQi1jRI
Whenever I’m checking RDP logs and wonder if a full GUI was obtained, I often refer back to this excellent article by Ponder The Bits on RDP event log tracking: https://t.co/MWTCl5bo9f
Check out 🚀msInvader: Simulate adversary techniques in M365 & Azure using Graph, REST, and EWS. Designed for blue teams, it helps generate attack telemetry to build, test, and enhance detection controls
🔗 https://t.co/qjxlRtb1MW
📺 https://t.co/mRi3I1URxv
#M365 #Azure #EntraID
@OT@OTR_Community
I just came across a tool called AttackGen. It's a simple tool that generates incident scenarios based on a Threat Actor and suggests simulations and possible detections at a high level. #llm#python#threatintel
👉 code: https://t.co/RtnGJQPAEH
👉 app: https://t.co/b1C2kFq9kz
Many companies are complicit in Israel’s genocidal war against 2.3 million Palestinians in Gaza. All peaceful popular efforts, including boycott and divestment, to hold these entities accountable for their support of Israel’s crimes against Palestinians are justified.
#BDS
Free online courses from EC-Council to start your
career in:
1️⃣ Ethical Hacking Essentials (EHE)
2️⃣ Digital Forensics Essentials (DFE)
3️⃣ Network Defense Essentials (NDE)
Register and Start Today
https://t.co/RQpGfs0mc7
FREE CERTIFICATION TRAINING FROM GITBIT
If you want to be a cloud cybersecurity engineer then you have to know cloud + cybersecurity as a core skill.
https://t.co/R0BKYfA6w3