Chris Baker
bakerc.bsky.social
Chris Baker
@bakerc.bsky.social
Pen testing, red team, vuln and risk mgmt, CISO | MBA, CISM, CHiSL, GPEN, OSCP, GMOB, Six Sigma Black Belt | http://threat-logic.com
Reposted by Chris Baker
Drag a file, leak a hash—Chrome’s quiet secret exposed. In this blog, Princ Sec Consult Drew Kirkpatrick reveals how Chrome’s drag-and-drop API lets web apps initiate complex actions; with some social engineering it can also trigger NTLM hash leaks on Windows via SMB. trustedsec.com/blog/draggin...
Dragging Secrets Out of Chrome: NTLM Hash Leaks via File URLs
trustedsec.com
June 13, 2025 at 3:00 PM
ffs YouTube what do we have to do to get the ads permanently removed from Never Gonna Give You Up already? You’ve made enough money, stop ruining all the good rolls
June 9, 2025 at 11:25 PM
If you're someone who needs to write Log Analytics or Sentinel queries in Kusto Query Language, or you'd just like an easy intro, look into this from Microsoft
https://techcommunity.microsoft.com/t5/azure-data-explorer-blog/introducing-kusto-detective-agency-season-2-bigger-better-and/ba-p/3829614
July 17, 2023 at 5:21 PM
July 6, 2023 at 6:47 PM