Break things, write reports

Recent posts

Oct 17, 2019
AD - Account Lockout vs DisabledDisabling an account in AD isn't instant, but a lockout is.
Oct 8, 2019
Lol ANUSome place got hacked, it's clearly sophisticated and not at all a result of shitty security, old systems.
Aug 31, 2019
On the viability of memory forensics in compromised environmentsWhen a machine is owned, can you really trust it to give you reliable data for incident response?
Aug 13, 2019
K8s config maps don't update in pods when mounted as volumesK8s oddities to keep in mind - changes to configmaps don't get reflected in realtime to pods
Aug 12, 2019
DMA attacks with the PCIscreamerDMA attacks - more practical than you think, so much so that the average pentester could do it
Aug 6, 2019
Shitty Pentest Findings - Password Autocomplete EnabledIf you had a pentest and it had a finding of 'Password autocomplete enabled', it was probably a shitty pentest
Aug 5, 2019
Jumpboxes are not a mitigation for credential theftAdvice no one reads from Microsoft, but probably should have. Jumpservers are Fake News(TM)
Aug 4, 2019
RVToolsHardcoded encryption keys in sysadmin tools
Jul 26, 2019
M$ - AlwaysOn VPN first thoughtsAlwaysOn, initial thoughts and ideas
Jul 25, 2019
Shitty sysadmins - ApplockerApplocker - 'May provide protection without being able to provide a robust defence'