Check out @jimsycurity.adminsdholder.com's latest blog post to understand how you can mitigate risk. ghst.ly/4kXTLd9
Check out @jimsycurity.adminsdholder.com's latest blog post to understand how you can mitigate risk. ghst.ly/4kXTLd9
#CyberSecurity #InfoSec
www.securityweek.com/akamai-micro...
#CyberSecurity #InfoSec
www.securityweek.com/akamai-micro...
With the right audit config, it's pretty easy to detect BadSuccessor.
academy.bluraven.io/blog/detecti...
#ThreatHunting #DetectionEngineering #ThreatDetection
#BadSuccessor
With the right audit config, it's pretty easy to detect BadSuccessor.
academy.bluraven.io/blog/detecti...
#ThreatHunting #DetectionEngineering #ThreatDetection
#BadSuccessor
dMSA abuse is still a problem, and @logangoins.bsky.social
just dropped a reality check with new tooling to prove it.
Learn more about the issue & the new BadTakeover BOF. ghst.ly/42POg9L
dMSA abuse is still a problem, and @logangoins.bsky.social
just dropped a reality check with new tooling to prove it.
Learn more about the issue & the new BadTakeover BOF. ghst.ly/42POg9L
This week's 🔥 topic from @martinsohn.dk: the Microsoft-wont-fix-yet "BadSuccessor" attack that abuses Server 2025's dMSA feature for domain takeover.
This 🧵 shows how you can use BloodHound to find BadSuccessor risk.
(1/9)
This week's 🔥 topic from @martinsohn.dk: the Microsoft-wont-fix-yet "BadSuccessor" attack that abuses Server 2025's dMSA feature for domain takeover.
This 🧵 shows how you can use BloodHound to find BadSuccessor risk.
(1/9)
blog.badsectorlabs.com/last-week-in...
blog.badsectorlabs.com/last-week-in...
-Unpatched BadSuccessor vulnerability in Windows
-Major Versa Concerto bugs unpatched
-GitLab Duo prompt injection attack
-Huge backlash against GitHub's Copilot integration
-CVSSv4 adoption remains low
-Botconf 2025 videos
-Unpatched BadSuccessor vulnerability in Windows
-Major Versa Concerto bugs unpatched
-GitLab Duo prompt injection attack
-Huge backlash against GitHub's Copilot integration
-CVSSv4 adoption remains low
-Botconf 2025 videos
We deep dive BadSuccessor
See how the attack works + how to detect it in the real world.
🎥 youtu.be/IWP-8IMzQU8
🔍 Based on research by @Akamai
#PurpleTeam #BadSuccessor #ActiveDirectory #RedTeam #BlueTeam #CyberSecurity #DetectionEngineering
We deep dive BadSuccessor
See how the attack works + how to detect it in the real world.
🎥 youtu.be/IWP-8IMzQU8
🔍 Based on research by @Akamai
#PurpleTeam #BadSuccessor #ActiveDirectory #RedTeam #BlueTeam #CyberSecurity #DetectionEngineering
📖 Read more: www.helpnetsecurity.com/2025/08/13/m...
#cybersecuritynews #patchtuesday @microsoft.com @tenablesecurity.bsky.social @satn.am @qualysofficial.bsky.social @dustinchilds.bsky.social @thezdi.bsky.social
📖 Read more: www.helpnetsecurity.com/2025/08/13/m...
#cybersecuritynews #patchtuesday @microsoft.com @tenablesecurity.bsky.social @satn.am @qualysofficial.bsky.social @dustinchilds.bsky.social @thezdi.bsky.social
www.akamai.com/blog/securit...
www.akamai.com/blog/securit...
(8/9)
(8/9)
-BadSuccessor bug can still be exploited
-Cisco security updates
-CrowdStrike buys Onum
-New MystRodX backdoor
-Backdoor found in the AppSuite PDF Editor
-Reports on Qilin, Sinobi, and the BQTLOCK ransomware
-FIFA WC26 scam campaigns starting a year in advance
-BadSuccessor bug can still be exploited
-Cisco security updates
-CrowdStrike buys Onum
-New MystRodX backdoor
-Backdoor found in the AppSuite PDF Editor
-Reports on Qilin, Sinobi, and the BQTLOCK ransomware
-FIFA WC26 scam campaigns starting a year in advance
unit42.paloaltonetworks.com/badsuccessor...
unit42.paloaltonetworks.com/badsuccessor...
✔️ OU discovery
✔️ Zero-creds MSA creation
✔️ Works with user or machine account
Details + code:
🔗 github.com/ibaiC/BadSuc...
🧵 kreep.in/badsuccessor...
✔️ OU discovery
✔️ Zero-creds MSA creation
✔️ Works with user or machine account
Details + code:
🔗 github.com/ibaiC/BadSuc...
🧵 kreep.in/badsuccessor...
Akamai reveals "BadSuccessor" flaw in Windows Server 2025, sparking debate. Microsoft labels it "moderate," but Akamai disagrees. Who knew security could be this spicy?
thenimblenerd.com?p=1046386
Akamai reveals "BadSuccessor" flaw in Windows Server 2025, sparking debate. Microsoft labels it "moderate," but Akamai disagrees. Who knew security could be this spicy?
thenimblenerd.com?p=1046386
github.com/CravateRouge...
github.com/CravateRouge...
Active Directory
unit42.paloaltonetworks.com/badsuccessor...
Active Directory
unit42.paloaltonetworks.com/badsuccessor...