Penetration Test Reports and Vulnerability Aggregation
Penetration test reports, aggregating findings and thinking more deeply.
Penetration test reports, aggregating findings and thinking more deeply.
AWS and overly permissive GitHub OIDC cross-account role trust policies
Blog post about Kubernetes Security Fundementals
Blog post about Cloud Configuration Reviews
How to own an internal domain and pivot into the cloud
Continuous AWS Testing with Snotra, Lambda, Cloud Watch EventBridge and S3.
Fixing issues in common tools with Python ldap3 when connecting to Domain Controllers with LDAP signing and binding enabled.
A series of blog Posts for Claranet Cyber Security about common high impact issues discoverd on internal penetration tests and how to fix them.
Getting Local Administrator access with NTLM Relay attacks against ADCS and RBCD attacks.