Excited to release a tool I've been working on lately - ShareFiltrator
ShareFiltrator finds credentials exposed in SharePoint/OneDrive via the Search API (_api/search/query) and also automates mass downloading of the discovered items.
Blog: blog.fndsec.net/2025/04/02/b...
02.04.2025 11:30
๐ 1
๐ 0
๐ฌ 0
๐ 0
Thank you! Bofhound has been incredible for us!
26.11.2024 04:52
๐ 0
๐ 0
๐ฌ 0
๐ 0
Excited to share a tool I've been working on - ShadowHound.
ShadowHound is a PowerShell alternative to SharpHound for Active Directory enumeration, using native PowerShell or ADModule (ADWS). As a bonus I also talk about some MDI detections and how to avoid them.
blog.fndsec.net/2024/11/25/s...
25.11.2024 12:25
๐ 32
๐ 10
๐ฌ 0
๐ 1
TrustedSec Tech Brief - November 2024
YouTube video by TrustedSec
TrustedSec Tech Brief
00:30 - NTLM Hash Disclosure Zero-Day
01:45 - Task Scheduler Vulnerability
02:30 - Exchange Server Issues
03:15 - AD Certificate Services Flaw
04:00 - Vulnerability Breakdown
04:45 - Palo Alto Zero-Day
05:30 - FortiGate VPN Update
www.youtube.com/watch?v=3mSD...
19.11.2024 16:32
๐ 61
๐ 21
๐ฌ 3
๐ 1
Last Week in Security (LWiS) - 2024-11-18
Arc browser RCE (@RenwaX23), more Fortinet woes (@SinSinology), PowerHuntShares v2 (@_nullbind), make_token_cert (@freefirex2), BOFs without DFR (@netbiosX), and more!
Arc browser RCE, more Fortinet woes (@sinsinology.bsky.social), PowerHuntShares v2, make_token_cert, BOFs without DFR (@netbiosx.bsky.social), and more!
blog.badsectorlabs.com/last-week-in...
19.11.2024 05:25
๐ 5
๐ 2
๐ฌ 0
๐ 0
AdobeFips - Adobe Reader Lolbin
www.hexacorn.com/blog/2024/11...
16.11.2024 18:12
๐ 9
๐ 5
๐ฌ 1
๐ 0
Beyond good olโ Run key, Part 144
www.hexacorn.com/blog/2024/11...
15.11.2024 22:17
๐ 23
๐ 10
๐ฌ 1
๐ 0