AM
72 posts

AM
@AdiMahluf
https://t.co/vfEqEKyc8s Senior Security Architect | CrowdStrike, Active Directory & Entra ID Expert Sharing PowerShell/API scripts, hardening guides, and articles
Katılım Kasım 2020
146 Takip Edilen7 Takipçiler

@GelosSnake @mthcht2 Excuse me….but browser extensions have been apart of Crowdstrike for years and now they are logically actionable. Don’t judge every EDR outright.
English

In every incident I work, browser extensions are the last thing anyone checks.
They're not in your EDR. Not in your SIEM. And they update themselves before anyone notices.
@mthcht2 built the tool to fix this. 🧵
English

🚨 Phishing Alert: Israeli Telegram users! 🇮🇱
Beware of fake Hebrew "System Messages" claiming account violations & demanding verification in 12h.
❌ DO NOT click. Malicious link: t8npxm[.]fun
#Phishing #Telegram #SecurityAlert #IsraelCyber #StaySafe

English

@UK_Daniel_Card Yes! I’m using admin01 - let’s see how your password spraying handles this. Haha
English

#SpecterOps shows how legitimate #MSSQL & #SCCM roles can lead to full admin. This isn’t a #0day problem - it’s a privilege design failure. Least-privilege still matters.
specterops.io/blog/2026/01/1…
English

#TenRoot indicates that multiple Falcon EDR deployments unexpectedly transitioned into Reduced Functionality Mode (RFM) following recent Microsoft updates. Notably, this behavior appears to have gone undetected by CrowdStrike to date.#CyberSecurity #Microsoft
English

Microsoft January 2026 Security Updates 2026-01 B cause CrowdStrike Falcon agent to enter RFM (Reduced functionality Mode)
#microsoft #update #CrowdStrike #Falcon #RFM
English

Stop guessing if a user clicked a link!
UrlThreatScanner automates the "User Browse Trace" workflow -
Dumps local browser history (NirSoft engine)
Checks URLs against active malware feeds
Reports hits in seconds
Open Source & ready for IR: lnkd.in/dSifsVsh
#InfoSec #DFIR

English
AM retweetledi

Regular reminder… this hardening series by Jerry Devore is super awesome. There’s no way you won’t learn things by reading these.
Part 1 - Disabling NTLMv1
Part 2 - Removing SMBv1
Part 3 - Enforcing LDAP Signing
Part 4 - Enforcing AES for Kerberos
Part 5 - Enforcing LDAP Channel Binding
Part 6 - Enforcing SMB Signing
Part 7 - Implementing Least Privilege
Link to all articles 👇
techcommunity.microsoft.com/tag/adhardening
English

@grok @amsterdamski2 יש עוד מנהיגים שעשו אף יותר מאובמה, אז למה הוא דווקא קיבל את הפרס הכל כך נחשק?
עברית

1. אובמה זכה בפרס נובל לשלום ב-2009 על "מאמצים יוצאי דופן לחיזוק הדיפלומטיה הבינלאומית ולשיתוף פעולה בין עמים", זמן קצר לאחר כניסתו לתפקיד, בעיקר על ההבטחה לשינוי במדיניות החוץ האמריקאית.
2. לא, טוני בלייר לא זכה בפרס נובל לשלום על הסכם יום שישי הטוב; הפרס באותה שנה (1998) הוענק לג'ון היום ולדוד טרימבל על תרומתם להסכם.
עברית

📷 New PowerShell Tool for the CrowdStrike Community
I’m excited to introduce a PowerShell script I developed at #10root Cyber Security that enables #CrowdStrike Identity Protection users to export all policy rules for faster audits
linkedin.com/posts/adi-mahl…
English












