Ash
833 posts

Ash
@_bin_Ash
Computer enjoyer // бегство от действительности)) (@Mandiant+@GoogleCloud)
เข้าร่วม Kasım 2020
236 กำลังติดตาม946 ผู้ติดตาม

@IceSolst @Atredis @DistrictCon "If that is what you want."
"This is hard work."
"I will do what I must."
"This hammer is heavy."
"Can I have some shoes?"
I don't think they could release a game like this nowadays lmao
English

THEY MADE A WORM IN C&C GENRALS
Insane blog post by Bryan Alexander from @Atredis, presented at the @DistrictCon junkyard
atredis.com/blog/2026/1/26…
English

PSA technique is not completely dead
The implied attack path of the post is coerce auth from system -> relay to LDAP -> computer account writes its own attribute
Post patch, there are still use cases for shadow creds. (GenericAll, GenericWrite, or AddKeyCredentialLink, etc).
Aurélien Chalot@Defte_
Anyone know if Microsoft silently patch the Shadow Creds attack recently ? Looks like a computer object cannot write its own attribute anymore :D
English
Ash รีทวีตแล้ว

@ConsciousHacker lots of people who used to post cool stuff on Twitter, got consulting jobs, and now are 🤐🤐🤐
English
Ash รีทวีตแล้ว

@tcstacks_ If you’re really good at infosec you can be wrong and still get paid
English

@GrahamHelton3 If I had followed this I would have become a lifelong SAP admin
English

The biggest one: "You should specialize early".
Kevin Naughton Jr.@KevinNaughtonJr
what's the worst career advice you've ever received
English

📢 Big News! @mariuszbit is joining Outflank! He ticks all the boxes:
Experienced #offsec researcher ✓
Respected name in red teaming ✓
Built RMF tooling for initial access ✓
His work is coming to OST✓
The red hoodie fits perfectly ✓
Welcome Mariusz!
outflank.nl/blog/2026/01/2…

English

@jamieantisocial People who say this have obviously never heard of spongemaxxing
Always try to be around smart people. Ask them for advice. Find people building or doing cool things and ask them about it
I’m lucky to feel dumb on a daily basis at work when I talk to colleagues
English

"avoid asking too many questions or you will seem dumb" 🤡
Kevin Naughton Jr.@KevinNaughtonJr
what's the worst career advice you've ever received
English
Ash รีทวีตแล้ว

The blog with how to use the rainbow tables for Net-NTLMv1 is finally live!
cloud.google.com/blog/topics/th…
My slides from presenting at BRCC are still available if you're curious about how crazy of a three year journey it was to get them created.
content.burningrivercybercon.com/talks/nic-losb…
English

@vysecurity Also somewhat related but there are SO many super super talented red teamers that are _not_ on Twitter/x at all. Take what u read on here with a grain of salt
English

@vysecurity Some of the most talented people I've had the pleasure of working with are great because of this. ofc technically they are gifted, but I learned to most from people who thing strategically about how to break in, what to do next, what levers to pull to get someone to do xyz, etc
English
















