Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
cybergreg
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
16 ms
·
1.
▲
by
cybergreg
1y ago
I realize I might have been late to the party. As other comments have said, its not as easy as blaming Microsoft, though this is a popular take.
2.
▲
by
cybergreg
1y ago
Good overview of Kerberoasting, still a common attack chain. A couple things though: To obtain access to a service, you actually need to get a service ticket (TGS) from the KDC (Domain Controller) to authenticate to the service, not a TGT.
3.
▲
by
cybergreg
1y ago
Again, threat actors are well aware of what they’re downloading. FWIW I’m an offsec specialist. I spend a lot of time bypassing EDR. Im just shocked at how little this crowd is aware of OpSec and threat intel. I’ll crawl back into my Reddit
4.
▲
by
cybergreg
1y ago
Threat intelligence is a thing.in fact there’s entire companies that sell just that. In fact, there’s entire government organizations that do just that.
5.
▲
by
cybergreg
1y ago
Huh? Small and medium sized businesses have how much to spend on security? Let alone IT?
6.
▲
by
cybergreg
1y ago
In the US, on a corporate owned device there is no expectation of privacy.
7.
▲
by
cybergreg
1y ago
Huntress is a cybersecurity company. They’re specifically hired for this purpose, to protect the company and its assets. As far as unique identifiers go, advertisers use a unique fingerprint of your browser to target you individually. Cooki
8.
▲
by
cybergreg
1y ago
You’re really missing the point here. Huntress is an MDR, a cybersecurity company. They protect the endpoint by monitoring it for malicious activity and responding in kind. It’s what they do, not unlike Crowdstrike, Microsoft, etc. Generall