

Jean-Michel Besnard
294 posts

@jmbesnard_maz
Partner - Cybersecurity Audit & Advisory - Grant Thornton France https://t.co/gQmAQTHcLe


















Why're we still doing the Impacket thing when @skelsec's stuff is so sick? gist.github.com/snovvcrash/a1a… (just kidding ofc, Impacket is forever in our hearts)




How do you meaningfully improve the security of your AD environment? Run these free tools quarterly: - PingCastle - ScriptSentry - Locksmith - ADeleginator If you just ran these tools and fixed everything identified by them, your AD environment will not only be more secure, but you’ll sleep better at night.


🚀 We just released my research on BadSuccessor - a new unpatched Active Directory privilege escalation vulnerability It allows compromising any user in AD, it works with the default config, and.. Microsoft currently won't fix it 🤷♂️ Read Here - akamai.com/blog/security-…

Today we unveil BadSuccessor - a new no-fix Active Directory privilege escalation technique. We will explore the recently introduced dMSA feature, and show how it enables turning a very common, seemingly benign permission, into a full domain take over. akamai.com/blog/security-…
