
Jim Sykora
19K posts

Jim Sykora
@JimSycurity
I enjoy security, technology, learning, books, & the great outdoors. Trying to be human & kind. Opinions = mine. He/Him/Hän







This week’s video is a quick peek at Titanis by @codewhisperer84 at @TrustedSec , a comprehensive Impacket alternative. It’s cross-platform, extensively documented, and written directly from the protocol specification 🌶️ Link down below



Backup Operators don’t get enough attention. @JimSycurity will be at #WWHF demonstrating how Titanis can be used to abuse Backup Operator privileges over SMB and bypass NTFS security descriptors. 👉 ghst.ly/4qMWVDM








New Indicator of Compromise (IoC) by the NTLM Relay Attack with Shadow Credentials, thanks to bugs in Impacket, a popular Python implementation. Will probably be fixed in the near future. dsinternals.com/en/indicator-o…

SCCM is everywhere, and still ripe for abuse. At #WWHF next month, @unsigned_sh0rt will walk through how to find, enumerate, and compromise SCCM environments using SCCMHunter — including a major upcoming update to the tool 👀 Don’t sleep on SCCM. 👉 ghst.ly/4qMWVDM






