⤷ Title: Configuring Azure AD as a Key Manager in WSO2 API Manager
════════════════════════
𐀪 Author: Dilan Lasantha
════════════════════════
ⴵ Time: Mon, 17 Mar 2025 15:05:00 GMT
════════════════════════
⌗ Tags: #external_key_manager #api_security #azure_active_directory #wso2 #wso2_api_manager
════════════════════════
𐀪 Author: Dilan Lasantha
════════════════════════
ⴵ Time: Mon, 17 Mar 2025 15:05:00 GMT
════════════════════════
⌗ Tags: #external_key_manager #api_security #azure_active_directory #wso2 #wso2_api_manager
Medium
Configuring Azure AD as a Key Manager in WSO2 API Manager
Integrating Azure Active Directory (Azure AD) as a Key Manager in WSO2 API Manager (WSO2 APIM) allows organizations to utilize Microsoft’s…
⤷ Title: The Hidden Cyber Threats Lurking in Your Digital Footprint — How External Attack Surface…
════════════════════════
𐀪 Author: Cytrusst
════════════════════════
ⴵ Time: Thu, 27 Mar 2025 09:37:52 GMT
════════════════════════
⌗ Tags: #external_attack_surface #attack_surface_management #cyber_security_solutions #asm #cybersecurity
════════════════════════
𐀪 Author: Cytrusst
════════════════════════
ⴵ Time: Thu, 27 Mar 2025 09:37:52 GMT
════════════════════════
⌗ Tags: #external_attack_surface #attack_surface_management #cyber_security_solutions #asm #cybersecurity
Medium
The Hidden Cyber Threats Lurking in Your Digital Footprint — How External Attack Surface Management Can Save Your Business
A cybersecurity insider’s guide to protecting your digital ecosystem with Cytrusst the Breach You Never Saw Coming
⤷ Title: Go-Spoof: A Tool for Cyber Deception
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Thu, 27 Mar 2025 14:00:00 +0000
════════════════════════
⌗ Tags: #Ben Bowman #Blue Team #Blue Team Tools #External/Internal #Web App #Cyber Deception #Deceptive Tooling #Go_Spoof
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Thu, 27 Mar 2025 14:00:00 +0000
════════════════════════
⌗ Tags: #Ben Bowman #Blue Team #Blue Team Tools #External/Internal #Web App #Cyber Deception #Deceptive Tooling #Go_Spoof
Black Hills Information Security, Inc.
Go-Spoof: A Tool for Cyber Deception - Black Hills Information Security, Inc.
Go-Spoof brings an old tool to a new language. The Golang rewrite [of Portspoof] provides similar efficiency and all the same features of the previous tool but with easier setup and useability.
❤1
⤷ Title: What is External Penetration Testing?
════════════════════════
𐀪 Author: Craw Cyber Security
════════════════════════
ⴵ Time: Thu, 24 Apr 2025 10:35:31 GMT
════════════════════════
⌗ Tags: #what_external_penetration #penetration_testing #penetration_testing_firm #external_penetration_test #penetration_testing_guide
════════════════════════
𐀪 Author: Craw Cyber Security
════════════════════════
ⴵ Time: Thu, 24 Apr 2025 10:35:31 GMT
════════════════════════
⌗ Tags: #what_external_penetration #penetration_testing #penetration_testing_firm #external_penetration_test #penetration_testing_guide
Medium
What is External Penetration Testing?
In today’s interconnected world, your organization’s digital presence extends far beyond the walls of your physical office. Websites, cloud…
⤷ Title: Apple Overhauls EU App Store Policy: New Fees & Open External Purchases After €500M Fine
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 08:06:23 +0000
════════════════════════
⌗ Tags: #Technology #App Store #Apple #Core Technology Fee #CTC #ctf #Developer Policy #Digital Markets Act #DMA #EU #European Union #External Purchases #Fees
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 08:06:23 +0000
════════════════════════
⌗ Tags: #Technology #App Store #Apple #Core Technology Fee #CTC #ctf #Developer Policy #Digital Markets Act #DMA #EU #European Union #External Purchases #Fees
Daily CyberSecurity
Apple Overhauls EU App Store Policy: New Fees & Open External Purchases After €500M Fine
Apple revised EU App Store policies, allowing external purchases and new fees (initial acquisition, service, CTC) after a €500M fine. Developers can now direct users to outside payment channels.
⤷ Title: Getting Started with NetExec: Streamlining Network Discovery and Access
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 09 Jul 2025 14:00:00 +0000
════════════════════════
⌗ Tags: #Dale Hobbs #External/Internal #How_To #Informational #Password Spray #Red Team #Red Team Tools #Active Directory Enumeration #Authentication Testing #Blue Team Defense #CrackMapExec Alternative #Credential Spraying #Lateral Movement #Netexec #Network Discovery #NTLM Authentication #Pass_the_Hash (PTH) #Pass_the_Ticket (PTT) #SMB Enumeration
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 09 Jul 2025 14:00:00 +0000
════════════════════════
⌗ Tags: #Dale Hobbs #External/Internal #How_To #Informational #Password Spray #Red Team #Red Team Tools #Active Directory Enumeration #Authentication Testing #Blue Team Defense #CrackMapExec Alternative #Credential Spraying #Lateral Movement #Netexec #Network Discovery #NTLM Authentication #Pass_the_Hash (PTH) #Pass_the_Ticket (PTT) #SMB Enumeration
Black Hills Information Security, Inc.
Getting Started with NetExec: Streamlining Network Discovery and Access - Black Hills Information Security, Inc.
One tool that I can't live without when performing a penetration test in an Active Directory environment is called NetExec. Being able to efficiently authenticate against multiple systems in the network is crucial, and NetExec is an incredibly powerful tool…
⤷ Title: Abusing Active Directory Certificate Services (Part 2)
════════════════════════
𐀪 Author: Kassie Kimball
════════════════════════
ⴵ Time: Thu, 12 Oct 2023 15:44:18 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #External/Internal #How_To #Informational #Red Team #Red Team Tools #Active Directory #exploit
════════════════════════
𐀪 Author: Kassie Kimball
════════════════════════
ⴵ Time: Thu, 12 Oct 2023 15:44:18 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #External/Internal #How_To #Informational #Red Team #Red Team Tools #Active Directory #exploit
Black Hills Information Security, Inc.
Abusing Active Directory Certificate Services (Part 2) - Black Hills Information Security, Inc.
Misconfigurations in Active Directory Certificate Services (ADCS) can introduce critical vulnerabilities into an Enterprise Active Directory environment, such as paths of escalation from low privileged accounts to domain administrator.
⤷ Title: Abusing Active Directory Certificate Services (Part 1)
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Thu, 05 Oct 2023 16:00:00 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #External/Internal #How_To #Informational #Red Team #Red Team Tools #Active Directory #exploit
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Thu, 05 Oct 2023 16:00:00 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #External/Internal #How_To #Informational #Red Team #Red Team Tools #Active Directory #exploit
Black Hills Information Security, Inc.
Abusing Active Directory Certificate Services (Part 1) - Black Hills Information Security, Inc.
Active Directory Certificate Services (ADCS) is used for public key infrastructure in an Active Directory environment. ADCS is widely used in enterprise Active Directory environments for managing certificates for systems, users, applications, and more.
⤷ Title: Detecting ADCS Privilege Escalation
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 13:31:22 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #Blue Team Tools #External/Internal #How_To #Informational #Active Directory #ADCS
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 13:31:22 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #Blue Team Tools #External/Internal #How_To #Informational #Active Directory #ADCS
Black Hills Information Security, Inc.
Detecting ADCS Privilege Escalation - Black Hills Information Security, Inc.
Active Directory Certificate Services (ADCS) is used to manage certificates for systems, users, applications, and more in an enterprise environment. Misconfigurations in ADCS can introduce critical vulnerabilities into an enterprise Active Directory environment.
⤷ Title: Apple Leverages Supreme Court Ruling to Fight App Store External Payment Links Mandate
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 25 Jul 2025 07:00:42 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #App Store #Apple #Developers #Epic Games #External Payments #ios #Lawsuit #monopoly #Supreme Court
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 25 Jul 2025 07:00:42 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #App Store #Apple #Developers #Epic Games #External Payments #ios #Lawsuit #monopoly #Supreme Court
Daily CyberSecurity
Apple Leverages Supreme Court Ruling to Fight App Store External Payment Links Mandate
Apple is challenging a court order to allow external App Store payment links, citing a recent Supreme Court ruling to argue judicial overreach in its ongoing battle with Epic Games.
⤷ Title: GoSpoof – Turning Attacks into Intel
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 14:00:00 +0000
════════════════════════
⌗ Tags: #Blue Team #Blue Team Tools #External/Internal #Informational #Intern #Web App #Cyber Deception #Deceptive Tooling #GoSpoof
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 14:00:00 +0000
════════════════════════
⌗ Tags: #Blue Team #Blue Team Tools #External/Internal #Informational #Intern #Web App #Cyber Deception #Deceptive Tooling #GoSpoof
Black Hills Information Security, Inc.
GoSpoof – Turning Attacks into Intel - Black Hills Information Security, Inc.
Imagine this: You’re an attacker ready to get their hands on valuable data that you can sell to afford going on a sweet vacation. You do your research, your recon, everything, ensuring that there’s no way this can go wrong. The day of the attack, you brew…
⤷ Title: Why You Got Hacked – 2025 Super Edition
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 19 Nov 2025 17:50:39 +0000
════════════════════════
⌗ Tags: #C2 #External/Internal #Finding #Informational #Jordan Drysdale #Web App #analysis #Report Findings
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 19 Nov 2025 17:50:39 +0000
════════════════════════
⌗ Tags: #C2 #External/Internal #Finding #Informational #Jordan Drysdale #Web App #analysis #Report Findings
Black Hills Information Security, Inc.
Why You Got Hacked - 2025 Super Edition - Black Hills Information Security, Inc.
This article was written to provide readers with an overview of a selection of our pentest results from the last 15 months. This data was gathered toward the end of September 2025. Shockingly, the data does not differ much from our prior analyses conducted…
⤷ Title: The Android Toll: Google to Charge $2.85 Per Install for External App Links
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 02:41:08 +0000
════════════════════════
⌗ Tags: #Technology #android #Antitrust #App Store Fees #Digital Markets Act #Epic Games #External Billing #Google Play Store #Judge James Donato #Mobile Gaming #Sideloading
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 02:41:08 +0000
════════════════════════
⌗ Tags: #Technology #android #Antitrust #App Store Fees #Digital Markets Act #Epic Games #External Billing #Google Play Store #Judge James Donato #Mobile Gaming #Sideloading
Daily CyberSecurity
The Android Toll: Google to Charge $2.85 Per Install for External App Links
In the legal dispute between Epic and Google, U.S. judges have signaled a clear inclination to require Google to alter its existing Google Play Store bundled billing model. In essence, Google woul…
⤷ Title: PNPT External Penetration Testing Cheat Sheet
════════════════════════
𐀪 Author: jaejun835
════════════════════════
ⴵ Time: Fri, 06 Mar 2026 03:21:58 GMT
════════════════════════
⌗ Tags: #external_penetration #pnpt #cheatsheet #cybersecurity #hacking
════════════════════════
𐀪 Author: jaejun835
════════════════════════
ⴵ Time: Fri, 06 Mar 2026 03:21:58 GMT
════════════════════════
⌗ Tags: #external_penetration #pnpt #cheatsheet #cybersecurity #hacking
Medium
PNPT External Penetration Testing Cheat Sheet
This is a cheat sheet for external penetration testing techniques used in TCM Security's PNPT (Practical Network Penetration Tester)…
⤷ Title: Windows Privilege Escalation Skills Assessment — Part I
════════════════════════
𐀪 Author: Psychopath-Traveler
════════════════════════
ⴵ Time: Sun, 12 Apr 2026 09:34:38 GMT
════════════════════════
⌗ Tags: #juicy_potato #windows_privilege_esc #windows_server_2016 #external_internal #ethical_hacking
════════════════════════
𐀪 Author: Psychopath-Traveler
════════════════════════
ⴵ Time: Sun, 12 Apr 2026 09:34:38 GMT
════════════════════════
⌗ Tags: #juicy_potato #windows_privilege_esc #windows_server_2016 #external_internal #ethical_hacking
Medium
Windows Privilege Escalation Skills Assessment — Part I
During a penetration test against the INLANEFREIGHT organization, you encounter a non-domain joined Windows server host that suffers from…
⤷ Title: Beyond Email: Attackers Hijack Microsoft Teams External Access to Launch Deep Network Compromise
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:18:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_36036 #Cyber Security #Dumpit #External Access Configuration #Incident Response #infosec #Kerberoasting #LSASS Memory Dump #Microsoft Teams phishing #Rapid7 Labs #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:18:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_36036 #Cyber Security #Dumpit #External Access Configuration #Incident Response #infosec #Kerberoasting #LSASS Memory Dump #Microsoft Teams phishing #Rapid7 Labs #social engineering
Daily CyberSecurity
Beyond Email: Attackers Hijack Microsoft Teams External Access to Launch Deep Network Compromise
Rapid7 Labs exposes how attackers are abusing Microsoft Teams external access and Dumpit memory scrapers to breach corporate networks. Protect your team!
⤷ Title: Auditing GitLab: The CI/CD Kill Chain
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 12:00:00 +0000
════════════════════════
⌗ Tags: #Blue Team Tools #External/Internal #InfoSec 301 #Recon #Red Team #Red Team Tools #attacking #cicd #Defending #devops #GitLab #gogatoz #Phil Miller
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Wed, 03 Jun 2026 12:00:00 +0000
════════════════════════
⌗ Tags: #Blue Team Tools #External/Internal #InfoSec 301 #Recon #Red Team #Red Team Tools #attacking #cicd #Defending #devops #GitLab #gogatoz #Phil Miller
Black Hills Information Security, Inc.
Auditing GitLab: The CI/CD Kill Chain - Black Hills Information Security, Inc.
Welcome to GoGatoZ — a purpose-built Go tool for GitLab CI/CD security auditing that can perform and automate the entire CI/CD kill chain along with everything those one-off scripts did and then some.
⤷ Title: External Network Penetration Test
════════════════════════
𐀪 Author: Taishakarsiya
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 13:43:49 GMT
════════════════════════
⌗ Tags: #network_penetration #penetration_testing #cybersecurity #external_network #web_penetration_testing
════════════════════════
𐀪 Author: Taishakarsiya
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 13:43:49 GMT
════════════════════════
⌗ Tags: #network_penetration #penetration_testing #cybersecurity #external_network #web_penetration_testing
Medium
External Network Penetration Test
External Network Penetration Testing: Best Strategies and Techniques