❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

Hacking with Hydra

By: BHIS
15 February 2024 at 12:00

What is Hydra? Hydra is a tool that can be used for password spraying. Let’s begin by defining the term β€œpassword spray.” A password spray is where an attacker defines […]

The post Hacking with Hydra appeared first on Black Hills Information Security, Inc..

Podcast: Passwords: You Are the Weakest Link

Why are companies still recommending an 8-character password minimum?Β  Passwords are some of the easiest targets for attackers, yet companies still allow weak passwords in their environment.Β Multiple service providers recommend […]

The post Podcast: Passwords: You Are the Weakest Link appeared first on Black Hills Information Security, Inc..

πŸ’Ύ

Webcast: Passwords: You Are the Weakest Link

Why are companies still recommending an 8-character password minimum?Β  Passwords are some of the easiest targets for attackers, yet companies still allow weak passwords in their environment.Β Multiple service providers recommend […]

The post Webcast: Passwords: You Are the Weakest Link appeared first on Black Hills Information Security, Inc..

πŸ’Ύ

Passwords: Our First Line of Defense

By: BHIS
3 December 2019 at 12:36

Darin Roberts // β€œWhy do you recommend a 15-character password policy when (name your favorite policy here) recommends only 8-character minimum passwords?” I have had this question posed to me […]

The post Passwords: Our First Line of Defense appeared first on Black Hills Information Security, Inc..

I Spy with InSpy v3.0

By: BHIS
28 January 2019 at 11:34

Darin Roberts// Early in 2018 I wrote a blog about InSpy. InSpy is a great reconnaissance tool that gathers usernames from LinkedIn. My first blog can be found here. A […]

The post I Spy with InSpy v3.0 appeared first on Black Hills Information Security, Inc..

I Spy with InSpy

By: BHIS
5 February 2018 at 10:33

Darin Roberts// Do you ever find yourself on an engagement and need just a few more names with which to conduct a password spray?Β Everyone knows the more emails you have, […]

The post I Spy with InSpy appeared first on Black Hills Information Security, Inc..

Wide-Spread Local Admin Testing

By: BHIS
13 June 2016 at 12:14

Brian Fehrman // In our experience, we see many Windows environments in which the local Administrator password is the same for many machines. We refer to this as Wide-Spread Local […]

The post Wide-Spread Local Admin Testing appeared first on Black Hills Information Security, Inc..

Check\ Your\ Tools

By: BHIS
26 February 2016 at 17:10

Brian King // There’s a one-liner password spray script that a lot of folks use to see if anyone on a domain is using a bad password like LetMeIn! or […]

The post Check\ Your\ Tools appeared first on Black Hills Information Security, Inc..

Password Spraying & Other Fun with RPCCLIENT

By: BHIS
30 October 2015 at 16:25

Joff Thyer // Β  Many of us in the penetration testing community ar​e used to scenarios whereby we land a targeted phishing campaign within a Windows enterprise environment and have […]

The post Password Spraying & Other Fun with RPCCLIENT appeared first on Black Hills Information Security, Inc..

❌
❌