home.social

#defensivesecurity — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #defensivesecurity, aggregated by home.social.

fetched live
  1. #PanelDiscussion
    Adversary Village at @defcon 34!
    Join Adam Pennington (ATT&CK Lead, @mitreattack), Sarah Hume (Purple Team Service Lead, Security Risk Advisors), Cheryl Biswas (Threat Intel Specialist), and Olaf Hartong (Defensive Specialist, FalconForce) for the panel discussion “From Threat-Intel to Tested Defense, the Adversary Simulation Playbook” on 7 Aug 2026 at DEF CON Creator Stage 3.
    Adversary Village schedule:
    adversaryvillage.org/adversary
    #AdversaryVillage #DEFCON34
    #PanelDiscussion #ThreatIntelligence #AdversarySimulation
    #PurpleTeam #DefensiveSecurity

  2. #PanelDiscussion
    Adversary Village at @defcon 34!
    Join Adam Pennington (ATT&CK Lead, @mitreattack), Sarah Hume (Purple Team Service Lead, Security Risk Advisors), Cheryl Biswas (Threat Intel Specialist), and Olaf Hartong (Defensive Specialist, FalconForce) for the panel discussion “From Threat-Intel to Tested Defense, the Adversary Simulation Playbook” on 7 Aug 2026 at DEF CON Creator Stage 3.
    Adversary Village schedule:
    adversaryvillage.org/adversary
    #AdversaryVillage #DEFCON34
    #PanelDiscussion #ThreatIntelligence #AdversarySimulation
    #PurpleTeam #DefensiveSecurity

  3. #PanelDiscussion
    Adversary Village at @defcon 34!
    Join Adam Pennington (ATT&CK Lead, @mitreattack), Sarah Hume (Purple Team Service Lead, Security Risk Advisors), Cheryl Biswas (Threat Intel Specialist), and Olaf Hartong (Defensive Specialist, FalconForce) for the panel discussion “From Threat-Intel to Tested Defense, the Adversary Simulation Playbook” on 7 Aug 2026 at DEF CON Creator Stage 3.
    Adversary Village schedule:
    adversaryvillage.org/adversary
    #AdversaryVillage #DEFCON34
    #PanelDiscussion #ThreatIntelligence #AdversarySimulation
    #PurpleTeam #DefensiveSecurity

  4. #PanelDiscussion
    Adversary Village at @defcon 34!
    Join Adam Pennington (ATT&CK Lead, @mitreattack), Sarah Hume (Purple Team Service Lead, Security Risk Advisors), Cheryl Biswas (Threat Intel Specialist), and Olaf Hartong (Defensive Specialist, FalconForce) for the panel discussion “From Threat-Intel to Tested Defense, the Adversary Simulation Playbook” on 7 Aug 2026 at DEF CON Creator Stage 3.
    Adversary Village schedule:
    adversaryvillage.org/adversary
    #AdversaryVillage #DEFCON34
    #PanelDiscussion #ThreatIntelligence #AdversarySimulation
    #PurpleTeam #DefensiveSecurity

  5. #PanelDiscussion
    Adversary Village at @defcon 34!
    Join Adam Pennington (ATT&CK Lead, @mitreattack), Sarah Hume (Purple Team Service Lead, Security Risk Advisors), Cheryl Biswas (Threat Intel Specialist), and Olaf Hartong (Defensive Specialist, FalconForce) for the panel discussion “From Threat-Intel to Tested Defense, the Adversary Simulation Playbook” on 7 Aug 2026 at DEF CON Creator Stage 3.
    Adversary Village schedule:
    adversaryvillage.org/adversary
    #AdversaryVillage #DEFCON34
    #PanelDiscussion #ThreatIntelligence #AdversarySimulation
    #PurpleTeam #DefensiveSecurity

  6. podverse.fm/episode/S224ePoTN Great episode #defensivesecurity podcast , no I’m not advertising Podverse it’s just what I use.

  7. The decades-old Finger protocol is being abused in new ClickFix malware campaigns. Attackers are using Finger to pull remote commands onto Windows systems, leading to Python-based malware or NetSupport RAT infections. Newer variants even check for analysis tools before execution.

    Anyone else seeing Finger traffic or legacy protocol misuse recently?
    Follow for more updates.

    #Malware #ClickFix #InfoSec #ThreatIntel #WindowsSecurity #CyberSecurity #RAT #LegacyProtocols #DefensiveSecurity

  8. The decades-old Finger protocol is being abused in new ClickFix malware campaigns. Attackers are using Finger to pull remote commands onto Windows systems, leading to Python-based malware or NetSupport RAT infections. Newer variants even check for analysis tools before execution.

    Anyone else seeing Finger traffic or legacy protocol misuse recently?
    Follow for more updates.

    #Malware #ClickFix #InfoSec #ThreatIntel #WindowsSecurity #CyberSecurity #RAT #LegacyProtocols #DefensiveSecurity

  9. The decades-old Finger protocol is being abused in new ClickFix malware campaigns. Attackers are using Finger to pull remote commands onto Windows systems, leading to Python-based malware or NetSupport RAT infections. Newer variants even check for analysis tools before execution.

    Anyone else seeing Finger traffic or legacy protocol misuse recently?
    Follow for more updates.

    #Malware #ClickFix #InfoSec #ThreatIntel #WindowsSecurity #CyberSecurity #RAT #LegacyProtocols #DefensiveSecurity

  10. The decades-old Finger protocol is being abused in new ClickFix malware campaigns. Attackers are using Finger to pull remote commands onto Windows systems, leading to Python-based malware or NetSupport RAT infections. Newer variants even check for analysis tools before execution.

    Anyone else seeing Finger traffic or legacy protocol misuse recently?
    Follow for more updates.

    #Malware #ClickFix #InfoSec #ThreatIntel #WindowsSecurity #CyberSecurity #RAT #LegacyProtocols #DefensiveSecurity

  11. The decades-old Finger protocol is being abused in new ClickFix malware campaigns. Attackers are using Finger to pull remote commands onto Windows systems, leading to Python-based malware or NetSupport RAT infections. Newer variants even check for analysis tools before execution.

    Anyone else seeing Finger traffic or legacy protocol misuse recently?
    Follow for more updates.

    #Malware #ClickFix #InfoSec #ThreatIntel #WindowsSecurity #CyberSecurity #RAT #LegacyProtocols #DefensiveSecurity

  12. 📋 Server Security Checklist — Essential Hardening Guide 🛡️

    Securing servers is critical to protect sensitive data, applications, and networks. Here’s a quick checklist every sysadmin and security engineer should follow to reduce risk and strengthen resilience. ⚡🔐

    1️⃣ System & OS Hardening
    🔹 Keep OS and packages updated (apply patches regularly).
    🔹 Remove or disable unused services & software.
    🔹 Configure secure boot and BIOS/UEFI passwords.

    2️⃣ Access Control
    🔹 Enforce strong passwords + MFA for all accounts.
    🔹 Use role-based access (least privilege).
    🔹 Disable root/administrator login over SSH/RDP.

    3️⃣ Network Security
    🔹 Restrict inbound/outbound traffic with firewalls.
    🔹 Segment critical servers from general networks.
    🔹 Disable unused ports & protocols.

    4️⃣ Secure Remote Access
    🔹 Use SSH with key-based auth (disable password logins).
    🔹 Enforce VPNs for admin access.
    🔹 Monitor and log remote sessions.

    5️⃣ Logging & Monitoring
    🔹 Enable centralized logging (syslog/SIEM).
    🔹 Monitor failed login attempts & unusual activity.
    🔹 Configure alerts for critical events.

    6️⃣ Data Protection
    🔹 Encrypt sensitive data at rest & in transit (TLS, disk encryption).
    🔹 Regularly back up data to secure, offline storage.
    🔹 Apply strict database access policies.

    7️⃣ Application & Patch Management
    🔹 Keep middleware, frameworks, and apps patched.
    🔹 Remove default credentials and sample configs.
    🔹 Use secure coding practices.

    8️⃣ Malware & Intrusion Defense
    🔹 Deploy antivirus/EDR for endpoints.
    🔹 Enable IDS/IPS at the network edge.
    🔹 Scan regularly for vulnerabilities.

    9️⃣ Physical & Cloud Security
    🔹 Restrict physical access to server rooms.
    🔹 Harden cloud instances with provider tools (security groups, IAM).
    🔹 Regularly review cloud audit logs.

    🔟 Policy & Compliance
    🔹 Apply CIS/NIST benchmarks.
    🔹 Document access, configs, and changes.
    🔹 Train admins in security best practices.

    #ServerSecurity #CyberSecurity #InfoSec #BlueTeam #SysAdmin #ITSecurity #SecurityChecklist #DefensiveSecurity

  13. 📋 Server Security Checklist — Essential Hardening Guide 🛡️

    Securing servers is critical to protect sensitive data, applications, and networks. Here’s a quick checklist every sysadmin and security engineer should follow to reduce risk and strengthen resilience. ⚡🔐

    1️⃣ System & OS Hardening
    🔹 Keep OS and packages updated (apply patches regularly).
    🔹 Remove or disable unused services & software.
    🔹 Configure secure boot and BIOS/UEFI passwords.

    2️⃣ Access Control
    🔹 Enforce strong passwords + MFA for all accounts.
    🔹 Use role-based access (least privilege).
    🔹 Disable root/administrator login over SSH/RDP.

    3️⃣ Network Security
    🔹 Restrict inbound/outbound traffic with firewalls.
    🔹 Segment critical servers from general networks.
    🔹 Disable unused ports & protocols.

    4️⃣ Secure Remote Access
    🔹 Use SSH with key-based auth (disable password logins).
    🔹 Enforce VPNs for admin access.
    🔹 Monitor and log remote sessions.

    5️⃣ Logging & Monitoring
    🔹 Enable centralized logging (syslog/SIEM).
    🔹 Monitor failed login attempts & unusual activity.
    🔹 Configure alerts for critical events.

    6️⃣ Data Protection
    🔹 Encrypt sensitive data at rest & in transit (TLS, disk encryption).
    🔹 Regularly back up data to secure, offline storage.
    🔹 Apply strict database access policies.

    7️⃣ Application & Patch Management
    🔹 Keep middleware, frameworks, and apps patched.
    🔹 Remove default credentials and sample configs.
    🔹 Use secure coding practices.

    8️⃣ Malware & Intrusion Defense
    🔹 Deploy antivirus/EDR for endpoints.
    🔹 Enable IDS/IPS at the network edge.
    🔹 Scan regularly for vulnerabilities.

    9️⃣ Physical & Cloud Security
    🔹 Restrict physical access to server rooms.
    🔹 Harden cloud instances with provider tools (security groups, IAM).
    🔹 Regularly review cloud audit logs.

    🔟 Policy & Compliance
    🔹 Apply CIS/NIST benchmarks.
    🔹 Document access, configs, and changes.
    🔹 Train admins in security best practices.

    #ServerSecurity #CyberSecurity #InfoSec #BlueTeam #SysAdmin #ITSecurity #SecurityChecklist #DefensiveSecurity

  14. 📋 Server Security Checklist — Essential Hardening Guide 🛡️

    Securing servers is critical to protect sensitive data, applications, and networks. Here’s a quick checklist every sysadmin and security engineer should follow to reduce risk and strengthen resilience. ⚡🔐

    1️⃣ System & OS Hardening
    🔹 Keep OS and packages updated (apply patches regularly).
    🔹 Remove or disable unused services & software.
    🔹 Configure secure boot and BIOS/UEFI passwords.

    2️⃣ Access Control
    🔹 Enforce strong passwords + MFA for all accounts.
    🔹 Use role-based access (least privilege).
    🔹 Disable root/administrator login over SSH/RDP.

    3️⃣ Network Security
    🔹 Restrict inbound/outbound traffic with firewalls.
    🔹 Segment critical servers from general networks.
    🔹 Disable unused ports & protocols.

    4️⃣ Secure Remote Access
    🔹 Use SSH with key-based auth (disable password logins).
    🔹 Enforce VPNs for admin access.
    🔹 Monitor and log remote sessions.

    5️⃣ Logging & Monitoring
    🔹 Enable centralized logging (syslog/SIEM).
    🔹 Monitor failed login attempts & unusual activity.
    🔹 Configure alerts for critical events.

    6️⃣ Data Protection
    🔹 Encrypt sensitive data at rest & in transit (TLS, disk encryption).
    🔹 Regularly back up data to secure, offline storage.
    🔹 Apply strict database access policies.

    7️⃣ Application & Patch Management
    🔹 Keep middleware, frameworks, and apps patched.
    🔹 Remove default credentials and sample configs.
    🔹 Use secure coding practices.

    8️⃣ Malware & Intrusion Defense
    🔹 Deploy antivirus/EDR for endpoints.
    🔹 Enable IDS/IPS at the network edge.
    🔹 Scan regularly for vulnerabilities.

    9️⃣ Physical & Cloud Security
    🔹 Restrict physical access to server rooms.
    🔹 Harden cloud instances with provider tools (security groups, IAM).
    🔹 Regularly review cloud audit logs.

    🔟 Policy & Compliance
    🔹 Apply CIS/NIST benchmarks.
    🔹 Document access, configs, and changes.
    🔹 Train admins in security best practices.

    #ServerSecurity #CyberSecurity #InfoSec #BlueTeam #SysAdmin #ITSecurity #SecurityChecklist #DefensiveSecurity

  15. 📋 Server Security Checklist — Essential Hardening Guide 🛡️

    Securing servers is critical to protect sensitive data, applications, and networks. Here’s a quick checklist every sysadmin and security engineer should follow to reduce risk and strengthen resilience. ⚡🔐

    1️⃣ System & OS Hardening
    🔹 Keep OS and packages updated (apply patches regularly).
    🔹 Remove or disable unused services & software.
    🔹 Configure secure boot and BIOS/UEFI passwords.

    2️⃣ Access Control
    🔹 Enforce strong passwords + MFA for all accounts.
    🔹 Use role-based access (least privilege).
    🔹 Disable root/administrator login over SSH/RDP.

    3️⃣ Network Security
    🔹 Restrict inbound/outbound traffic with firewalls.
    🔹 Segment critical servers from general networks.
    🔹 Disable unused ports & protocols.

    4️⃣ Secure Remote Access
    🔹 Use SSH with key-based auth (disable password logins).
    🔹 Enforce VPNs for admin access.
    🔹 Monitor and log remote sessions.

    5️⃣ Logging & Monitoring
    🔹 Enable centralized logging (syslog/SIEM).
    🔹 Monitor failed login attempts & unusual activity.
    🔹 Configure alerts for critical events.

    6️⃣ Data Protection
    🔹 Encrypt sensitive data at rest & in transit (TLS, disk encryption).
    🔹 Regularly back up data to secure, offline storage.
    🔹 Apply strict database access policies.

    7️⃣ Application & Patch Management
    🔹 Keep middleware, frameworks, and apps patched.
    🔹 Remove default credentials and sample configs.
    🔹 Use secure coding practices.

    8️⃣ Malware & Intrusion Defense
    🔹 Deploy antivirus/EDR for endpoints.
    🔹 Enable IDS/IPS at the network edge.
    🔹 Scan regularly for vulnerabilities.

    9️⃣ Physical & Cloud Security
    🔹 Restrict physical access to server rooms.
    🔹 Harden cloud instances with provider tools (security groups, IAM).
    🔹 Regularly review cloud audit logs.

    🔟 Policy & Compliance
    🔹 Apply CIS/NIST benchmarks.
    🔹 Document access, configs, and changes.
    🔹 Train admins in security best practices.

    #ServerSecurity #CyberSecurity #InfoSec #BlueTeam #SysAdmin #ITSecurity #SecurityChecklist #DefensiveSecurity

  16. 📋 Server Security Checklist — Essential Hardening Guide 🛡️

    Securing servers is critical to protect sensitive data, applications, and networks. Here’s a quick checklist every sysadmin and security engineer should follow to reduce risk and strengthen resilience. ⚡🔐

    1️⃣ System & OS Hardening
    🔹 Keep OS and packages updated (apply patches regularly).
    🔹 Remove or disable unused services & software.
    🔹 Configure secure boot and BIOS/UEFI passwords.

    2️⃣ Access Control
    🔹 Enforce strong passwords + MFA for all accounts.
    🔹 Use role-based access (least privilege).
    🔹 Disable root/administrator login over SSH/RDP.

    3️⃣ Network Security
    🔹 Restrict inbound/outbound traffic with firewalls.
    🔹 Segment critical servers from general networks.
    🔹 Disable unused ports & protocols.

    4️⃣ Secure Remote Access
    🔹 Use SSH with key-based auth (disable password logins).
    🔹 Enforce VPNs for admin access.
    🔹 Monitor and log remote sessions.

    5️⃣ Logging & Monitoring
    🔹 Enable centralized logging (syslog/SIEM).
    🔹 Monitor failed login attempts & unusual activity.
    🔹 Configure alerts for critical events.

    6️⃣ Data Protection
    🔹 Encrypt sensitive data at rest & in transit (TLS, disk encryption).
    🔹 Regularly back up data to secure, offline storage.
    🔹 Apply strict database access policies.

    7️⃣ Application & Patch Management
    🔹 Keep middleware, frameworks, and apps patched.
    🔹 Remove default credentials and sample configs.
    🔹 Use secure coding practices.

    8️⃣ Malware & Intrusion Defense
    🔹 Deploy antivirus/EDR for endpoints.
    🔹 Enable IDS/IPS at the network edge.
    🔹 Scan regularly for vulnerabilities.

    9️⃣ Physical & Cloud Security
    🔹 Restrict physical access to server rooms.
    🔹 Harden cloud instances with provider tools (security groups, IAM).
    🔹 Regularly review cloud audit logs.

    🔟 Policy & Compliance
    🔹 Apply CIS/NIST benchmarks.
    🔹 Document access, configs, and changes.
    🔹 Train admins in security best practices.

    #ServerSecurity #CyberSecurity #InfoSec #BlueTeam #SysAdmin #ITSecurity #SecurityChecklist #DefensiveSecurity

  17. 🔐 Cybersecurity isn’t one-dimensional.

    Defensive: firewalls, antimalware, access control.

    Offensive: pentesting, Red Teaming, exploit testing.

    Hybrid: incident response, disaster recovery, threat intel.

    At RELIANOID, we combine these layers to keep organizations resilient in a fast-changing threat landscape. 🛡️


    relianoid.com/resources/knowle

  18. A HUGE thank you to Mental Health Hacker's first PLATINUM sponsor, @blumirasec

    This will enable us to bring even MORE to the @blueteamvillage
    this year! Our partnership with BTV will enable us to help bring resources, content, and giveaways at @defcon this year! See ya'll soon!!

    A Security Tool Your IT Team Can Actually Use

    Blumira simplifies cybersecurity by combining ease of use with powerful protection. We enable teams big and small to defend effectively.

    #defcon #defcon33 #blueteam #defensivesecurity #siem #mentalhealth

  19. A HUGE thank you to Mental Health Hacker's first PLATINUM sponsor, @blumirasec

    This will enable us to bring even MORE to the @blueteamvillage
    this year! Our partnership with BTV will enable us to help bring resources, content, and giveaways at @defcon this year! See ya'll soon!!

    A Security Tool Your IT Team Can Actually Use

    Blumira simplifies cybersecurity by combining ease of use with powerful protection. We enable teams big and small to defend effectively.

    #defcon #defcon33 #blueteam #defensivesecurity #siem #mentalhealth

  20. A HUGE thank you to Mental Health Hacker's first PLATINUM sponsor, @blumirasec

    This will enable us to bring even MORE to the @blueteamvillage
    this year! Our partnership with BTV will enable us to help bring resources, content, and giveaways at @defcon this year! See ya'll soon!!

    A Security Tool Your IT Team Can Actually Use

    Blumira simplifies cybersecurity by combining ease of use with powerful protection. We enable teams big and small to defend effectively.

    #defcon #defcon33 #blueteam #defensivesecurity #siem #mentalhealth

  21. A HUGE thank you to Mental Health Hacker's first PLATINUM sponsor, @blumirasec

    This will enable us to bring even MORE to the @blueteamvillage
    this year! Our partnership with BTV will enable us to help bring resources, content, and giveaways at @defcon this year! See ya'll soon!!

    A Security Tool Your IT Team Can Actually Use

    Blumira simplifies cybersecurity by combining ease of use with powerful protection. We enable teams big and small to defend effectively.

    #defcon #defcon33 #blueteam #defensivesecurity #siem #mentalhealth

  22. A HUGE thank you to Mental Health Hacker's first PLATINUM sponsor, @blumirasec

    This will enable us to bring even MORE to the @blueteamvillage
    this year! Our partnership with BTV will enable us to help bring resources, content, and giveaways at @defcon this year! See ya'll soon!!

    A Security Tool Your IT Team Can Actually Use

    Blumira simplifies cybersecurity by combining ease of use with powerful protection. We enable teams big and small to defend effectively.

    #defcon #defcon33 #blueteam #defensivesecurity #siem #mentalhealth

  23. 🚨 Giveaway Alert: 3 LetsDefend VIP+ Vouchers for 1 Month Access! 🚨

    We’re giving away 3 LetsDefend VIP+ vouchers for a free 1-month subscription on 02/01.

    What You Need to Do:

    1️⃣ Join our Discord Community (buff.ly/3Cfy9rT).

    #CyberSecurity #BlueTeam #CyberTraining #InfoSec #DefensiveSecurity #ThreatHunting #SOCAnalyst #CyberDefense #SecurityAwareness #BlueTeamTraining

  24. It took until the Second Edition, but now the audiobook version of The Defensive Security Handbook has been released!!

    Share with your friends, your co-workers, your leadership, family that you kind of like, etc

    audible.com/pd/Defensive-Secur

    #newrelease #secondedition #defensivesecurity #infosec #audiobook #cybersecurity

  25. It took until the Second Edition, but now the audiobook version of The Defensive Security Handbook has been released!!

    Share with your friends, your co-workers, your leadership, family that you kind of like, etc

    audible.com/pd/Defensive-Secur

    #newrelease #secondedition #defensivesecurity #infosec #audiobook #cybersecurity

  26. It took until the Second Edition, but now the audiobook version of The Defensive Security Handbook has been released!!

    Share with your friends, your co-workers, your leadership, family that you kind of like, etc

    audible.com/pd/Defensive-Secur

    #newrelease #secondedition #defensivesecurity #infosec #audiobook #cybersecurity

  27. It took until the Second Edition, but now the audiobook version of The Defensive Security Handbook has been released!!

    Share with your friends, your co-workers, your leadership, family that you kind of like, etc

    audible.com/pd/Defensive-Secur

    #newrelease #secondedition #defensivesecurity #infosec #audiobook #cybersecurity

  28. It took until the Second Edition, but now the audiobook version of The Defensive Security Handbook has been released!!

    Share with your friends, your co-workers, your leadership, family that you kind of like, etc

    audible.com/pd/Defensive-Secur

    #newrelease #secondedition #defensivesecurity #infosec #audiobook #cybersecurity

  29. 🔐 Cybersecurity Essentials: In this diagram, we help you understand the key cybersecurity approaches needed for resilience.

    At RELIANOID, we support organizations by monitoring and securing all these layers in a dynamic threat landscape. 🛡️

  30. #Kali #Linux 2023.1 Release ( #KaliPurple & Python Changes) | Kali Linux Blog

    Over the years, we have perfected what we have specialized in, offensive #security. We are now starting to branch into a new area, defensive security! We are doing an initial technical preview pre-launch of “Kali Purple”. This is still in its infancy and is going to need time to mature.
    #DefensiveSecurity

    kali.org/blog/kali-linux-2023-

  31. #Kali #Linux 2023.1 Release ( #KaliPurple & Python Changes) | Kali Linux Blog

    Over the years, we have perfected what we have specialized in, offensive #security. We are now starting to branch into a new area, defensive security! We are doing an initial technical preview pre-launch of “Kali Purple”. This is still in its infancy and is going to need time to mature.
    #DefensiveSecurity

    kali.org/blog/kali-linux-2023-

  32. #Kali #Linux 2023.1 Release ( #KaliPurple & Python Changes) | Kali Linux Blog

    Over the years, we have perfected what we have specialized in, offensive #security. We are now starting to branch into a new area, defensive security! We are doing an initial technical preview pre-launch of “Kali Purple”. This is still in its infancy and is going to need time to mature.
    #DefensiveSecurity

    kali.org/blog/kali-linux-2023-

  33. 2023.1 Release ( & Python Changes) | Kali Linux Blog

    Over the years, we have perfected what we have specialized in, offensive . We are now starting to branch into a new area, defensive security! We are doing an initial technical preview pre-launch of “Kali Purple”. This is still in its infancy and is going to need time to mature.

    kali.org/blog/kali-linux-2023-

  34. #Kali #Linux 2023.1 Release ( #KaliPurple & Python Changes) | Kali Linux Blog

    Over the years, we have perfected what we have specialized in, offensive #security. We are now starting to branch into a new area, defensive security! We are doing an initial technical preview pre-launch of “Kali Purple”. This is still in its infancy and is going to need time to mature.
    #DefensiveSecurity

    kali.org/blog/kali-linux-2023-

  35. The Locksmith Active Directory (AD) Certificate Services (CS) remediation tool has been updated: github.com/TrimarcJake/Locksmi

    New features:
    - Support for Restricted Admin Mode. If RAM is detected, Locksmith will ask to be re-run using the -Credential switch.
    - If the AD Powershell module is not installed on Win 10/11, Locksmith will attempt to install it for you.
    Note: previously only available on server-class OSes.
    - New functions for checking user type and elevation status.
    - Auto-generated snippets for ownership issues (a subset of ESC4/ESC5).
    - Support for non-English Active Directory environments!

    Next planned updates:
    - Add individual CA Hosts to $SafeUsers using SIDs.
    - Perform additional environment checks before attempting to run.
    - Rename modes to something that makes sense.

    #IAM #IdentitySecurity #CertificateServices #ActiveDirectory #ActiveDirectoryCertificateServices #ADCS #PKI #Locksmith #OpenSource #DefensiveSecurity #DefensiveSecurityTooling #Pizza

  36. The Locksmith Active Directory (AD) Certificate Services (CS) remediation tool has been updated: github.com/TrimarcJake/Locksmi

    New features:
    - Support for Restricted Admin Mode. If RAM is detected, Locksmith will ask to be re-run using the -Credential switch.
    - If the AD Powershell module is not installed on Win 10/11, Locksmith will attempt to install it for you.
    Note: previously only available on server-class OSes.
    - New functions for checking user type and elevation status.
    - Auto-generated snippets for ownership issues (a subset of ESC4/ESC5).
    - Support for non-English Active Directory environments!

    Next planned updates:
    - Add individual CA Hosts to $SafeUsers using SIDs.
    - Perform additional environment checks before attempting to run.
    - Rename modes to something that makes sense.

    #IAM #IdentitySecurity #CertificateServices #ActiveDirectory #ActiveDirectoryCertificateServices #ADCS #PKI #Locksmith #OpenSource #DefensiveSecurity #DefensiveSecurityTooling #Pizza

  37. The Locksmith Active Directory (AD) Certificate Services (CS) remediation tool has been updated: github.com/TrimarcJake/Locksmi

    New features:
    - Support for Restricted Admin Mode. If RAM is detected, Locksmith will ask to be re-run using the -Credential switch.
    - If the AD Powershell module is not installed on Win 10/11, Locksmith will attempt to install it for you.
    Note: previously only available on server-class OSes.
    - New functions for checking user type and elevation status.
    - Auto-generated snippets for ownership issues (a subset of ESC4/ESC5).
    - Support for non-English Active Directory environments!

    Next planned updates:
    - Add individual CA Hosts to $SafeUsers using SIDs.
    - Perform additional environment checks before attempting to run.
    - Rename modes to something that makes sense.

    #IAM #IdentitySecurity #CertificateServices #ActiveDirectory #ActiveDirectoryCertificateServices #ADCS #PKI #Locksmith #OpenSource #DefensiveSecurity #DefensiveSecurityTooling #Pizza

  38. The Locksmith Active Directory (AD) Certificate Services (CS) remediation tool has been updated: github.com/TrimarcJake/Locksmi

    New features:
    - Support for Restricted Admin Mode. If RAM is detected, Locksmith will ask to be re-run using the -Credential switch.
    - If the AD Powershell module is not installed on Win 10/11, Locksmith will attempt to install it for you.
    Note: previously only available on server-class OSes.
    - New functions for checking user type and elevation status.
    - Auto-generated snippets for ownership issues (a subset of ESC4/ESC5).
    - Support for non-English Active Directory evironments!

    Next planned updates:
    - Add individual CA Hosts to $SafeUsers using SIDs.
    - Perform additional environment checks before attempting to run.
    - Rename modes to something that makes sense.

    #IAM #IdentitySecurity #CertificateServices #ActiveDirectory #ActiveDirectoryCertificateServices #ADCS #PKI #Locksmith #OpenSource #DefensiveSecurity #DefensiveSecurityTooling #Pizza