Attack Security

70 posts

Attack Security banner
Attack Security

Attack Security

@AttkSec

Are you ready for an Attack? We are security professionals specializing in penetration testing, cybersecurity assessments, and social engineering training.

USA Katılım Temmuz 2022
50 Takip Edilen1 Takipçiler
Attack Security retweetledi
Logisek
Logisek@logisekict·
If you’re doing #cloud #security penetration testing and Azure is in scope, AZexec should already be in your toolkit! AZexec brings a NetExec-style workflow to Azure & Entra ID, finally giving cloud pentesters the same speed, clarity, and offensive ergonomics we’re used to on-prem. What makes it a must-have: - Unauthenticated & guest-based enumeration (yes, the Azure “null session” problem is very real) - Two-phase password spraying using Microsoft’s own APIs (stealthy, lockout-safe, MFA-aware) - Deep Entra ID & ARM reconnaissance: users, roles, apps, Key Vaults, storage, networks, VMs - Remote command execution across Azure VMs, Arc, MDE, and Intune - Credential extraction & token abuse tailored for cloud-native environments - NetExec-style output + reporting (CSV / JSON / HTML) for clean ops and clean reports If you know CrackMapExec / NetExec, AZexec will feel instantly familiar, just adapted for how Azure actually works. Cloud attacks deserve cloud-native tooling. 🔗 GitHub: github.com/Logisek/AZexec #CloudSecurity #Azure #EntraID #Pentesting #RedTeam #OffensiveSecurity #AzureAD #NetExec #AZexec #Logisek
English
0
29
81
4.1K
Attack Security retweetledi
Graham Helton (too much for zblock)
Excited to disclose my research allowing RCE in Kubernetes It allows running arbitrary commands in EVERY pod in a cluster using a commonly granted "read only" RBAC permission. This is not logged and and allows for trivial Pod breakout. Unfortunately, this will NOT be patched.
Graham Helton (too much for zblock) tweet media
English
47
375
2.6K
413.4K
Attack Security retweetledi
Burp Suite
Burp Suite@Burp_Suite·
3 words 👉 Reduce false positives. 😌 Burp AI can automatically audit broken access control vulnerabilities to reduce false positives.
English
0
8
36
5.6K
Attack Security retweetledi
Burp Suite
Burp Suite@Burp_Suite·
24 million websites compromised. 🧵 PortSwigger's Director of Research, James Kettle (@albinowax), & AppSec expert John Hammond (@_JohnHammond) reveal the fatal flaws in HTTP/1.1 that attackers are abusing right now. #HTTP1MustDie
Burp Suite tweet media
English
3
23
145
12K
Attack Security retweetledi
d4d
d4d@zakfedotkin·
Active Scan++ just got sharper - we’ve added new checks for OS command injection, powered by our latest ASCII Control Characters research. Install via Extensions -> BApp Store
d4d tweet media
English
1
21
154
16.8K
Attack Security retweetledi
Kuba Gretzky
Kuba Gretzky@mrgretzky·
‼️ Evilginx Pro 4.1 - Google Safe Browsing evasion 🛡️ I've just uploaded a short demo video demonstrating how Evilginx Pro is able to evade Enhanced protection in Google Chrome browser. The update is coming soon! 🔗 youtube.com/watch?v=6AJ6dY…
YouTube video
YouTube
Kuba Gretzky tweet media
English
5
89
461
27.2K
Attack Security
Attack Security@AttkSec·
Need another route to Active Directory? Check out SharpADWS, it has the ability to extract or modify Active Directory data without communicating directly with the LDAP server. github.com/wh0amitz/Sharp…
English
0
0
0
7
Attack Security retweetledi
Yehuda Smirnov
Yehuda Smirnov@yudasm_·
Excited to share a tool I've been working on - ShadowHound. ShadowHound is a PowerShell alternative to SharpHound for Active Directory enumeration, using native PowerShell or ADModule (ADWS). As a bonus I also talk about some MDI detections and how to avoid them
Yehuda Smirnov tweet media
English
9
178
638
51.6K
Attack Security retweetledi
freefirex
freefirex@freefirex2·
Saw some other folks realize its actually really easy to use certificates to authenticate as other users on windows if you have access to the API. #L69" target="_blank" rel="nofollow noopener">github.com/trustedsec/CS-… We're now releasing our previously internal make_token_cert bof to auth using only a .pfx file :)
English
1
96
302
27.8K