Introduction episode coming January 11th, with @jaredcatkinson and @jsecurity101 hosting, and @v3r5ace as producer. This will be available wherever you listen to podcasts. We are all excited to start getting content out to you, drop a follow to keep updated!
Built some automation to help with dumping cookies using Chromium's remote debugger. This technique works against Chromium browsers (Google Chrome, Microsoft Edge, etc.) on any OS! I dig into how the technique works and present my implementation posts.specterops.io/hands-in…
Public training offerings have been posted for Red Team Operations, Mac Tradecraft and Vulnerability Research for Operators in March/April.
Sign up here: specterops.io/how-we-help/tr…
CVE-2020-17049 is not only bypass acount is sensitive.
You *CAN* obtain tickets with "Kerberos only delegation", not only with "protocol transition"
Pre-requiste are still important, but attack surface is a little bit bigger :)
Sorry for bad message @jakekarnes42