❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

Webcast: Weaponizing Active Directory

By: BHIS
19 August 2019 at 13:09

Click on the timecodes to jump to that part of the video (on YouTube) Slides for this webcast can be found here: https://www.blackhillsinfosec.com/wp-content/uploads/2020/09/SLIDES_WeaponizingActiveDirectory.pdf 0:54 Background behind this webcast, what and […]

The post Webcast: Weaponizing Active Directory appeared first on Black Hills Information Security, Inc..

I Spy with InSpy v3.0

By: BHIS
28 January 2019 at 11:34

Darin Roberts// Early in 2018 I wrote a blog about InSpy. InSpy is a great reconnaissance tool that gathers usernames from LinkedIn. My first blog can be found here. A […]

The post I Spy with InSpy v3.0 appeared first on Black Hills Information Security, Inc..

Domain User Enumeration

By: BHIS
7 December 2016 at 09:54

Chevy Swanson // EveryoneΒ loves being able to speed up their work with custom tools, but the clear problem is that computers are a bit too fussy about everything being perfect […]

The post Domain User Enumeration appeared first on Black Hills Information Security, Inc..

Downloading an Address Book from an Outlook Web App (OWA) Portal

By: BHIS
14 September 2016 at 11:46

Carrie Roberts //Β  Update 10/03/16:Β Want to download the address book automatically with PowerShell? Check out Beau Bullocks latest additions to MailSniper As part of a penetration test, you’ve gained access […]

The post Downloading an Address Book from an Outlook Web App (OWA) Portal appeared first on Black Hills Information Security, Inc..

Wide-Spread Local Admin Testing

By: BHIS
13 June 2016 at 12:14

Brian Fehrman // In our experience, we see many Windows environments in which the local Administrator password is the same for many machines. We refer to this as Wide-Spread Local […]

The post Wide-Spread Local Admin Testing appeared first on Black Hills Information Security, Inc..

Password Spraying & Other Fun with RPCCLIENT

By: BHIS
30 October 2015 at 16:25

Joff Thyer // Β  Many of us in the penetration testing community ar​e used to scenarios whereby we land a targeted phishing campaign within a Windows enterprise environment and have […]

The post Password Spraying & Other Fun with RPCCLIENT appeared first on Black Hills Information Security, Inc..

❌
❌