academy.bluraven.io/blog/detecti...
#ThreatHunting #DetectionEngineering #Kusto #KQL #MicrosoftSentinel
academy.bluraven.io/blog/detecti...
#ThreatHunting #DetectionEngineering #Kusto #KQL #MicrosoftSentinel
blog.sekoia.io/sneaky-2fa-e...
blog.sekoia.io/sneaky-2fa-e...
𝚞𝚗𝚏𝚘𝚛𝚝𝚞𝚗𝚊𝚝𝚎 𝚛𝚎𝚏𝚛𝚊𝚒𝚗𝚜—
Implant AIᵀᴹ
. . . ✩°。𓋼𓏲⋆.❨𖦹₊˚୭ . . .
#ScifaikuSaturday #prompt | #implant
#scifi #haiku
#GrimScribe | unfortunate refrain
𝚞𝚗𝚏𝚘𝚛𝚝𝚞𝚗𝚊𝚝𝚎 𝚛𝚎𝚏𝚛𝚊𝚒𝚗𝚜—
Implant AIᵀᴹ
. . . ✩°。𓋼𓏲⋆.❨𖦹₊˚୭ . . .
#ScifaikuSaturday #prompt | #implant
#scifi #haiku
#GrimScribe | unfortunate refrain
Governador acusando adversário político ENQUANTO A VOTAÇÃO ESTÁ OCORRENDO
This botnet was taken down today by the FBI, DOJ, Lumen, and Microsoft
www.lumen.com/blog-and-new...
This botnet was taken down today by the FBI, DOJ, Lumen, and Microsoft
www.lumen.com/blog-and-new...
techcommunity.microsoft.com/blog/identit...
techcommunity.microsoft.com/blog/identit...
www.bleepingcomputer.com/news/securit...
www.bleepingcomputer.com/news/securit...
blog.sekoia.io/global-analy...
blog.sekoia.io/global-analy...
We found ODx phishing-as-a-service providing device code capabilities in addition to their AiTM offerings. ODx is one of the most popular AiTM kits currently. It's also tracked as Storm-1167 and FlowerStorm.
We found ODx phishing-as-a-service providing device code capabilities in addition to their AiTM offerings. ODx is one of the most popular AiTM kits currently. It's also tracked as Storm-1167 and FlowerStorm.
AitM doesn't have our PRT, so it asks for user/pass and now CA knows which policies apply
If a policy requires hybrid or compliant device, AitM is told to do device auth, but it can't and is blocked
It can't ask our device to do it because cert based auth is awesome like that
session cookie theft attack? You are required the PRT in addition to the cookie?
AitM doesn't have our PRT, so it asks for user/pass and now CA knows which policies apply
If a policy requires hybrid or compliant device, AitM is told to do device auth, but it can't and is blocked
It can't ask our device to do it because cert based auth is awesome like that
thehackernews.com/2025/10/micr...
thehackernews.com/2025/10/micr...
https://blog.sekoia.io/sneaky-2fa-exposing-a-new-aitm-phishing-as-a-service/
#detection #sneaky2fa
https://blog.sekoia.io/sneaky-2fa-exposing-a-new-aitm-phishing-as-a-service/
#detection #sneaky2fa
securitylabs.datadoghq.com/articles/beh...
securitylabs.datadoghq.com/articles/beh...
therecord.media/russia-fsb-t...
therecord.media/russia-fsb-t...
trac-labs.com/wikikit-aitm...
trac-labs.com/wikikit-aitm...
More Michael:
How to Test AitM e Without Hacking Tools -- www.youtube.com/watch?v=Esu8...
AitM: Post-Exploitation -- www.youtube.com/watch?v=WY4m...
OPSEC Fundamentals Red Teams -- www.youtube.com/watch?v=AHwf...
More Michael:
How to Test AitM e Without Hacking Tools -- www.youtube.com/watch?v=Esu8...
AitM: Post-Exploitation -- www.youtube.com/watch?v=WY4m...
OPSEC Fundamentals Red Teams -- www.youtube.com/watch?v=AHwf...