YouTube video by Recon Conference
Recon 2025 - The Finer Details of LSA Credential Recovery
@reconmtl.bsky.social has uploaded the majority of the 2025 talks, including my talk on LSA. You can check it out at the below link if you'd like.
Thank you again to the organizers and everyone else who helps put on the conference. I look forward to coming back!
youtu.be/G2CfMWXLU1U?...
16.10.2025 15:34 β π 8 π 4 π¬ 0 π 0
BloodHound v8.0 is here! π
This update introduces BloodHound OpenGraph, revolutionizing Identity Attack Path Management by exposing attack paths throughout your entire tech stack, not just AD/Entra ID.
Read more from Justin Kohler: ghst.ly/bloodhoundv8
π§΅: 1/7
29.07.2025 13:13 β π 13 π 9 π¬ 1 π 1
Escaping the Confines of Port 445 - SpecterOps
NTLM relay attacks targeting SMB restrict lateral movement options to those that solely require port 445/TCP. Learn at least one method of overcoming this restriction to enable additional lateral move...
Classic NTLM relay problem: Stuck on port 445/TCP, can't use WMI (needs 135/TCP), and dumping hashes triggers EDR alerts.
So what's a stealthy attacker to do? π€
Our latest blog post explores evasive alternatives beyond the old techniques. ghst.ly/3ILR1l0
25.07.2025 00:02 β π 8 π 2 π¬ 0 π 0
Make Sure to Use SOAP(y) - An Operators Guide to Stealthy AD Collection Using ADWS - SpecterOps
Learn how to perform stealthy recon of Active Directory environments over ADWS for Red Team Assessments
@logangoins.bsky.social is dropping knowledge on ADWS exploitation. π§
Learn how attackers use the SOAP protocol for LDAP collection on Domain Controllers & dive into maximizing OPSEC-considerate collection workflows while exploring detection methods. ghst.ly/4lPodH4
25.07.2025 16:19 β π 6 π 1 π¬ 0 π 0
Understanding & Mitigating BadSuccessor - SpecterOps
Understanding the impact of the BadSuccessor AD attack primitive and mitigating the abuse via targeted Deny ACEs on Organizational Units.
BadSuccessor is a new AD attack primitive that abuses dMSAs, allowing an attacker who can modify or create a dMSA to escalate privileges and take over the forest.
Check out @jimsycurity.adminsdholder.com's latest blog post to understand how you can mitigate risk. ghst.ly/4kXTLd9
27.05.2025 21:11 β π 16 π 9 π¬ 0 π 1
We're proud to sponsor BSides Groningen, happening today. Find our team at the event and say hi! π
02.05.2025 11:48 β π 4 π 1 π¬ 0 π 0
Think NTLM relay is a solved problem? Think again.
Relay attacks are more complicated than many people realize. Check out this deep dive from Elad Shamir on NTLM relay attacks & the new edges we recently added to BloodHound. ghst.ly/4lv3E31
08.04.2025 23:00 β π 27 π 20 π¬ 1 π 2
Our team is at #GartnerIAM! Come find our team at Booth 407. π
Talk with Specters about BloodHound Enterprise, our open source tools, and get answers on Identity Attack Path Management.
24.03.2025 11:53 β π 2 π 1 π¬ 1 π 0
Attackers see what you don't: paths between your cloud & on-prem systems.
Our Chief Product Officer Justin Kohler will be at #GartnerIAM demonstrating how attackers exploit these connections & how Attack Path Management can help close these gaps. ghst.ly/4kzkFbB
20.03.2025 13:26 β π 4 π 3 π¬ 0 π 0
Hear how State Street Bank tackled #identitysecurity compliance using the adversaryβs view of #AttackPaths. Join Justin Kohler & State Street's Eric McGuffin at #FSISAC as they unpack the process & tools used to secure AD & Azure.
Learn more βΆοΈ ghst.ly/3D61s0s
28.02.2025 18:21 β π 0 π 1 π¬ 0 π 0
Our Consulting Services team is growing! π
We are now hiring Consultants and Senior Consultants to join the team as operators, trainers, and program developers.
Learn more & apply today! ghst.ly/3PBmGFZ
16.01.2025 14:06 β π 5 π 3 π¬ 1 π 2
What can you expect to learn in our Azure Security Fundamentals training at #SOCON2025? Course architect
@1cemoon.bsky.social shares that students will dive into:
β‘οΈ Azure Resource Manager
β‘οΈ Common security misconfigurations
β‘οΈ Entra ID authentication
Register today: ghst.ly/reg-socon25-...
11.12.2024 20:27 β π 2 π 2 π¬ 0 π 0
Good news, BloodHound users! π
Weβve rolled out v6.3 with new features & improvements to help you visualize #AttackPaths more clearly & show progress in reducing identity risks over time. Check out Justin Kohler's blog post to learn more: ghst.ly/49wB23L
12.12.2024 17:05 β π 5 π 2 π¬ 0 π 0
A quick tour of new functions in BARK that support Azure Key Vault tradecraft research, including a walk-through of how an adversary may chain these functions together as part of an attack path: posts.specterops.io/azure-key-va...
20.11.2024 17:44 β π 17 π 8 π¬ 0 π 0
Adversary Tactics: Red Team Operations
December 9-12, 2024
Black Hat Europe
Our RTO course is going to London! π¬π§
Join our training at #BHEU December 9-12, and test your offensive skills in a hardened enterprise environment with live defenders hunting you down.
Learn more & register π ghst.ly/4hT39xN
20.11.2024 22:13 β π 3 π 1 π¬ 1 π 0
Media platform covering global conflict zones. Focus on the Ukraine-Russia war. Consider supporting us once via buymeacoffee.com/noelreports or by becoming a member via patreon.com/NOELREPORTS.
Providing in-depth news coverage about the armed conflicts and crises all around the globe (focus on πΊπ¦ Ukraine).
π¨ archer83able@gmail.com
YT: www.youtube.com/@archer83able
βοΈ KoFi: https://t.co/zRfCNxRSdu
End-to-end Cybersecurity consulting team leading the industry, supporting organizations, and giving back. #HackThePlanet
https://trustedsec.com/
Welcome to Tenable. Your exposure ends here.
Cloud Exposure | Vulnerability Exposure | OT Exposure | Identity Exposure
π: tenable.com
The leading MDR provider trusted by some of the worldβs most renowned brands to expel adversaries, minimize risk, and build security resilience.
π expel.com
Specializing in pen testing, red teaming, and Active SOC. We share our knowledge through blogs, webcasts, open-source tools, and Backdoors & Breaches game.
blackhillsinfosec.com & poweredbybhis.com
A leading provider of #offensivesecurity solutions & contributor to the #infosec community. #pentesting #hacking
Entrepreneur
Costplusdrugs.com
I like making computers misbehave. Does stuff at http://specterops.io.
Github: https://github.com/leechristensen
Mastodon: @tifkin_@infosec.exchange
Father / Husband / COO at SpecterOps
official CrowdStrike account (check domainπ)
The first cloud-native platform that protects endpoints and cloud workloads, identity & data. #WeStopBreaches. Free trial: http://crwdstr.ke/tryfalcon
Hacker at outsidersecurity.nl. Researches Entra ID, AD and occasionally Windows security. I write open source security tools and do blogs/talks to educate others on these topics. Blog: dirkjanm.io
Security researcher with a camera | @FalconForce.nl | Microsoft MVP | Snow man role model | https://youtube.com/@olafhartong
Adversary Simulation | Wannabe
https://twitter.com/tw1sm
https://blog.tw1sm.io
Researcher @SpecterOps. Coding towards chaotic good while living on the decision boundary. #dontbanequality