๐New Writeupโ๏ธ
โโโโโโโโโโโโโโโ
๐Date: Tue, 08 Aug 2023 16:17:08 GMT
โโโโโโโโโโโโโโโ
โ๏ธTitle: BloodHound Community Edition: A New Era
โโโโโโโโโโโโโโโ
๐Link: https://medium.com/p/d64689806e90
โโโโโโโโโโโโโโโ
Tags: #microsoft #cybersecurity #bloodhound #specterops #bloodhound_enterprise
โโโโโโโโโโโโโโโ
๐Date: Tue, 08 Aug 2023 16:17:08 GMT
โโโโโโโโโโโโโโโ
โ๏ธTitle: BloodHound Community Edition: A New Era
โโโโโโโโโโโโโโโ
๐Link: https://medium.com/p/d64689806e90
โโโโโโโโโโโโโโโ
Tags: #microsoft #cybersecurity #bloodhound #specterops #bloodhound_enterprise
Medium
BloodHound Community Edition: A New Era
Iโm proud to announce the availability of BloodHound Community Edition (BloodHound CE)!
๐New Writeupโ๏ธ
โโโโโโโโโโโโโโโ
๐Date: Mon, 09 Oct 2023 17:28:18 GMT
โโโโโโโโโโโโโโโ
โ๏ธTitle: Perfect Loader Implementations
โโโโโโโโโโโโโโโ
๐Link: https://medium.com/p/7d785f4e1fa
โโโโโโโโโโโโโโโ
Tags: #research #red_teaming #specterops #infosec
โโโโโโโโโโโโโโโ
๐Date: Mon, 09 Oct 2023 17:28:18 GMT
โโโโโโโโโโโโโโโ
โ๏ธTitle: Perfect Loader Implementations
โโโโโโโโโโโโโโโ
๐Link: https://medium.com/p/7d785f4e1fa
โโโโโโโโโโโโโโโ
Tags: #research #red_teaming #specterops #infosec
Medium
Perfect Loader Implementations
Thank you to SpecterOps for supporting this research and to Lee and Sarah for proofreading and editing! Crossposted on GitHub.
โคท Title: OneLogin AD Connector Flaw Exposes Credentials & Allows Account Impersonation
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: Ddos
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Tue, 17 Jun 2025 00:16:04 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Vulnerability Report #Account Impersonation #active directory #AD #AWS #cybersecurity #IAM #Identity and Access Management #OneLogin #S3 bucket #SpecterOps #Vulnerability
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: Ddos
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Tue, 17 Jun 2025 00:16:04 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Vulnerability Report #Account Impersonation #active directory #AD #AWS #cybersecurity #IAM #Identity and Access Management #OneLogin #S3 bucket #SpecterOps #Vulnerability
Daily CyberSecurity
OneLogin AD Connector Flaw Exposes Credentials & Allows Account Impersonation
A critical flaw in OneLogin's AD Connector exposed API keys, allowing attackers to impersonate users across organizations via unclaimed S3 buckets and forged JWT tokens.
โคท Title: Beyond the Memory: How LSA Whisperer BOF Bypasses PPL and Credential Guard Without Touching LSASS
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: ddos
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Mon, 23 Feb 2026 03:04:12 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Open Source Tool #BOF #Cloud SSO #Cobalt Strike #Credential Guard #DPAPI #Kerberos #LSA Whisperer #LsaCallAuthenticationPackage #LSASS #Pentesting #PPL #red teaming #SpecterOps #Windows Security
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: ddos
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Mon, 23 Feb 2026 03:04:12 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Open Source Tool #BOF #Cloud SSO #Cobalt Strike #Credential Guard #DPAPI #Kerberos #LSA Whisperer #LsaCallAuthenticationPackage #LSASS #Pentesting #PPL #red teaming #SpecterOps #Windows Security
Penetration Testing Tools
Beyond the Memory: How LSA Whisperer BOF Bypasses PPL and Credential Guard Without Touching LSASS
Interact with Kerberos and DPAPI without opening an LSASS handle. LSA Whisperer BOF uses official APIs to bypass PPL and Credential Guard during red teaming.
โคท Title: SQL Server 2025 AI Features Enable Data Exfiltration
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: ddos
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Wed, 17 Jun 2026 07:33:00 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Cybercriminals #Artificial intelligence #Cyber Security #Data Exfiltration #SpecterOps #SQL Server 2025
โโโโโโโโโโโโโโโโโโโโโโโโ
๐ช Author: ddos
โโโโโโโโโโโโโโโโโโโโโโโโ
โดต Time: Wed, 17 Jun 2026 07:33:00 +0000
โโโโโโโโโโโโโโโโโโโโโโโโ
โ Tags: #Cybercriminals #Artificial intelligence #Cyber Security #Data Exfiltration #SpecterOps #SQL Server 2025
Information Security News
SQL Server 2025 AI Features Enable Data Exfiltration
Discover how attackers exploit new SQL Server 2025 AI features. SpecterOps researchers reveal methods for data exfiltration and command communication.