Skip to content

Severins kleine Cyber Seite

Nichts auf der Welt ist so mächtig wie ein Phishing-Email, dessen Zeit gekommen ist. (frei nach Victor Hugo)

  • Discovery
  • About Me
  • Impressum

Month: August 2021

Azure AD. Attack of the Default Config

On August 30, 2021 By severin In Gefundenes

Uncloaking dangerous and default configurations within Azure. There are several default configurations within the admin portal of Azure. The main affected area is Azure Active Directory (Azure AD) which is the primary area that controls …

Continue reading

Cobalt Strike, a Defender’s Guide

On August 30, 2021 By severin In Gefundenes

Intro The Ryuk threat actors went from a phishing email to domain wide ransomware in 5 hours. They escalated privileges using Zerologon (CVE-2020-1472), less than 2 hours after the initial … Read More https://thedfirreport.com/2021/08/29/cobalt-strike-a-defenders-guide/

Continue reading

Recent Posts

  • OWASP/wrongsecrets
  • OIDC Tester
  • «Die US-Regierung hat die Möglichkeit, auf viele Politiker­mails in Europa zuzugreifen»
  • URL validation bypass cheat sheet for SSRF/CORS/Redirect – 2024 Edition | W
  • Conditional Access Regelwerke in 2025 –

Recent Comments

No comments to show.

Archives

  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • June 2024
  • April 2024
  • February 2024
  • January 2024
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • June 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • August 2022
  • May 2022
  • March 2022
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • October 2020

Categories

  • Gefundenes
  • Uncategorized
WordPress Theme: Chronus by ThemeZee.