hoax
cack.bsky.social
hoax
@cack.bsky.social
Reposted by hoax
New blog post alert! 🚨

Lance Cain shares insights from a recent security assessment about the attack surface of Single-Page Applications integrated w/ Azure and how to aid technology professionals in securing their Azure environment. ghst.ly/4gq8E5y
SPA is for Single-Page Abuse! - Using Single-Page Application Tokens to Enumerate Azure
Author: Lance B. Cain
ghst.ly
December 10, 2024 at 4:13 PM
Reposted by hoax
The 'find' command has a reputation of being a little tricky to use, so a while back I did made a short video about it www.youtube.com/watch?v=U2fs...
The Find Command
YouTube video by TomNomNom
www.youtube.com
November 26, 2024 at 6:07 PM
Reposted by hoax
Just added a whole bunch more people to my Hackers starter pack 🥰 go.bsky.app/NRP3ecE
November 14, 2024 at 12:19 PM
Reposted by hoax
🆕​ New PrivescCheck extended check!

ℹ️​ The script can now enumerate dangerous default file extension associations, such as '.bat' or '.wsh'.

⚠️​ A manual review of the result is always recommended, but for the most part, it should be fine.

github.com/itm4n/Prives...
GitHub - itm4n/PrivescCheck: Privilege Escalation Enumeration Script for Windows
Privilege Escalation Enumeration Script for Windows - itm4n/PrivescCheck
github.com
March 11, 2024 at 8:29 PM