#esc13
My team and I had a great three days of learning, collaboration, connections, and meaningful engagement at Apple's CEI Leadership and Learning Academy. #esc13 #amplifyvoices #codeandcreate #Pathways #collegeandcareer
November 21, 2024 at 9:23 PM
🚨 Last Chance! 🚨 Registration closes April 15th for the BTLPT Test Prep Academy! 📅 Don't miss this essential training to prepare for the TExES Bilingual Target Language Proficiency Test (#190).

Sign up now! 👉 mailchi.mp/esc13/btlpt

#BTLPT #BilingualEducation #TeacherPrep
April 3, 2025 at 2:24 PM
For our friends in Texas, #FlockSafety holds contracts with multiple Education Service Centers, including ESC 4 (Austin) & 13 (Houston). There's prob more...

Is Flock enabling CBP/ICE to monitor families via schools?

ESC 4: www.documentcloud.org/documents/26...

ESC 13: esc13.net/services/flo...
r250203-flock-mad-2025-04-01-combined
www.documentcloud.org
August 21, 2025 at 3:42 PM
Mist from HackTheBox is just a monster active directory challenge. My favorite parts were exploiting PetitPotam with ntlmrelayx to relay into LDAP access on the DC, enumerating Defender exclusion directories, and exploiting ESC13.
HTB: Mist
Mist is an insane-level Windows box mostly focused on Active Directory attacks. It starts off with a simple file disclosure vulneraility in Pluck CMS that allows me to leak the admin password and upload a malicious Pluck module to get a foothold on the webserver. There’s a directory at the filesystem root with links in it, and by overwriting one, I get execution as a user on the host. I’ll find LDAP signing is off, and use PetitPotam to coerce the server to authenticate to my, and relay that to the domain controller to get LDAP access as the machine account. I’ll add a shadow credential to that account and get auth as the machine account on the webserver. I’ll use machine access to get access to the local administrator account. In another user’s home directory I’ll find a KeePass database, along with an image showing a partial password. I’ll use Hashcat to break the database and get an account on the domain. From there, I’ll abuse multiple hops in Active Directory, reading a GMSA password, abusing AddKeyCredentialLink, and exploiting ADCS ESC 13 twice.
0xdf.gitlab.io
October 26, 2024 at 3:01 PM
Undrar när den riktiga paniken ska infinna sig hos de som säljer #esc13 biljetter på Blocket. Härlig optimism hos många där!
November 21, 2024 at 10:51 PM
Att följa @RonnieRitter och @CarolinaNoren just nu hjälper lite mot irritationen att inte ha biljetter till #esc13
November 21, 2024 at 10:51 PM
The song is crucial, but the guy is cute. Azerbeidshan #esc13
November 30, 2024 at 10:30 PM
Nana Mouskouri resurrected #esc13 #israel
November 30, 2024 at 9:41 PM
If you have cold hands due to weather, watch #esc13 and comment on fb and twitter. #iphone5 will heat up like the new Boing...
November 30, 2024 at 8:51 PM
Next year we're sending Benny Thurnheer #esc13 #srfesc
November 30, 2024 at 7:53 PM
Es kommt das Freikirchenfeeling auf! Yeah #esc13 #srfesc
November 30, 2024 at 7:53 PM
Lithunian belly button. Next! #srfesc #esc13
November 30, 2024 at 7:53 PM
Oh! my favorite hairstyle is back! Hairsprayhairsprayhairspray! #srfesc #esc13 #moldavie
November 30, 2024 at 7:53 PM
Moldavia! Tell me the name of your hairdresser! #srfesc #esc13
November 30, 2024 at 7:53 PM
Did Finnland buy Michelle Hunziker and adjusted Cats in rythm? And why are Margot Hellwigs daughters on stage?
#srfesc #esc13
November 30, 2024 at 6:55 PM
Ah! Nana Mouskouri is back! But lost her glasses! Or is it Alexandra resurrected? #srfesc #esc13
November 30, 2024 at 6:55 PM
Next! Next! Next! #belarus #esc13 #srfesc it is getting worse! There is no soccer world championship this year? That could be the song.
November 30, 2024 at 6:55 PM
Oh Belgium! What a choreography! The singer is just commenting with his eyebrows... #srfesc #esc13
November 30, 2024 at 6:55 PM
Oh, dä Zivi von Malta #srfesc #esc13
November 30, 2024 at 6:55 PM
They are so happy to habe left the island for some time... #srfesc #esc13 #malta
November 30, 2024 at 6:55 PM
Oh! Germany! Time to go to toilet. #srfesc #esc13
November 30, 2024 at 6:05 PM
Next! Germany! #esc13 #srfesc
November 30, 2024 at 6:05 PM
🤩 We're headed to Austin next week! If you're attending the @region13 Social Studies Summit, don't miss our sessions in the afternoon!

📗 We'll even be giving away a copy of our book at both sessions!

🎯 It's not too late to register- see you there! esc13.net/events/socia...
June 7, 2025 at 2:15 PM
GOAD – part – ADCS ///////

Active Directory Certificate Services (ADCS) is a critical component in Windows environments, often targeted during penetration testing and red team engagements. This article explores common vulnerabilities and misconfigurations in ADCS, specifically focusing on ESC…
GOAD – part – ADCS ///////
Active Directory Certificate Services (ADCS) is a critical component in Windows environments, often targeted during penetration testing and red team engagements. This article explores common vulnerabilities and misconfigurations in ADCS, specifically focusing on ESC (Elevation of Service Control) vulnerabilities like ESC5, ESC7, ESC9, ESC10, ESC11, ESC13, ESC14, and ESC15. You Should Know: 1. Understanding ADCS Vulnerabilities ADCS provides PKI (Public Key Infrastructure) services in Windows domains.
undercodetesting.com
April 16, 2025 at 1:51 AM