If anyone knows who this site belongs to, let me know so I can give a proper shout out!
If anyone knows who this site belongs to, let me know so I can give a proper shout out!
Run these free tools quarterly:
- PingCastle
- ScriptSentry
- Locksmith
- ADeleginator
Run these free tools quarterly:
- PingCastle
- ScriptSentry
- Locksmith
- ADeleginator
PingCastle: an Active Directory health assessment tool (https://pingcastle.com)
PingCastle is awesome for a number of reasons but the main things I really like is how detailed the health check report is and the references it includes in the report.
PingCastle: an Active Directory health assessment tool (https://pingcastle.com)
PingCastle is awesome for a number of reasons but the main things I really like is how detailed the health check report is and the references it includes in the report.
Run PingCastle/PurpleKnight, Locksmith, and ScriptSentry in your environment and fix all the critical issues before your next pentest.
I promise you...they will be weep
Run PingCastle/PurpleKnight, Locksmith, and ScriptSentry in your environment and fix all the critical issues before your next pentest.
I promise you...they will be weep
🏰 Your privacy/safety is in another PingCastle
🏰 Your privacy/safety is in another PingCastle
7 free tools that find the holes first: PingCastle (start here), BloodHound CE, Purple Knight, Certipy, Snaffler, and ADeleg.
Your own domain, with authorisation.
https://app.stationx.net/book
7 free tools that find the holes first: PingCastle (start here), BloodHound CE, Purple Knight, Certipy, Snaffler, and ADeleg.
Your own domain, with authorisation.
https://app.stationx.net/book
Under the covers it uses LsaOpenPolicy() and LsaLookupNames() to identify service names that may belong to AV/EDR products.
It works remotely and quickly.
Actually lots of interesting info can be obtained this way..
Under the covers it uses LsaOpenPolicy() and LsaLookupNames() to identify service names that may belong to AV/EDR products.
It works remotely and quickly.
Actually lots of interesting info can be obtained this way..
[1] maester.dev
[1] maester.dev
✅ PingCastle : www.it-connect.fr/comment-audi...
✅ Purple Knight : www.it-connect.fr/comment-audi...
#audit #activedirectory #sysadmin #infosec #microsoft #pingcastle #purpleknight
✅ PingCastle : www.it-connect.fr/comment-audi...
✅ Purple Knight : www.it-connect.fr/comment-audi...
#audit #activedirectory #sysadmin #infosec #microsoft #pingcastle #purpleknight
www.pingcastle.com/download/
#infosec #blueteam #pentest
www.pingcastle.com/download/
#infosec #blueteam #pentest
Working with an org right now, getting them down from 100 to < 20.
Working with an org right now, getting them down from 100 to < 20.
On vient de recevoir le mail, devinez quels tools il utilise
On vient de recevoir le mail, devinez quels tools il utilise
dfir.ch/posts/tear_d...
I analyzed 250 PingCastle Reports, grouping the findings along the categories I used for my 10 AD Commandments series.
dfir.ch/posts/tear_d...
I analyzed 250 PingCastle Reports, grouping the findings along the categories I used for my 10 AD Commandments series.
Introduction: Server Message Block (SMB) is the backbone of file sharing in Windows networks, but its legacy dialects and misconfigured signing requirements create massive security blind…
Introduction: Server Message Block (SMB) is the backbone of file sharing in Windows networks, but its legacy dialects and misconfigured signing requirements create massive security blind…
✅ Découvrir 𝗣𝗶𝗻𝗴𝗖𝗮𝘀𝘁𝗹𝗲 : www.it-connect.fr/comment-audi...
✅ Découvrir 𝗣𝘂𝗿𝗽𝗹𝗲 𝗞𝗻𝗶𝗴𝗵𝘁 : www.it-connect.fr/comment-audi...
#audit #activedirectory #sysadmin #microsoft #tools #tuto #it
✅ Découvrir 𝗣𝗶𝗻𝗴𝗖𝗮𝘀𝘁𝗹𝗲 : www.it-connect.fr/comment-audi...
✅ Découvrir 𝗣𝘂𝗿𝗽𝗹𝗲 𝗞𝗻𝗶𝗴𝗵𝘁 : www.it-connect.fr/comment-audi...
#audit #activedirectory #sysadmin #microsoft #tools #tuto #it
Tonight's session is about customizing your toolset to avoid detection: A case study using PingCastle. How can we adapt the red team toolset to avoid detection?
truecyber.world
#redteam
Tonight's session is about customizing your toolset to avoid detection: A case study using PingCastle. How can we adapt the red team toolset to avoid detection?
truecyber.world
#redteam
dfir.ch/posts/tear_d...
I analyzed 250 PingCastle Reports, grouping the findings along the categories I used for my 10 AD Commandments series.
The number of affected domains is stated within each finding.
dfir.ch/posts/tear_d...
I analyzed 250 PingCastle Reports, grouping the findings along the categories I used for my 10 AD Commandments series.
The number of affected domains is stated within each finding.
« ADcheck: Assess the security of your Active Directory with few or all privileges. »
« ADcheck: Assess the security of your Active Directory with few or all privileges. »