Initial Foothold via Guest Wi-Fi and Misconfigured Domain Wi-FiBackground: During an internal red team assessment at a client’s office, I identified potential security gaps in both the guest and…Sep 26, 2024Sep 26, 2024
Google Dorking: Potential Data Breach and AD CompromiseI have identified a critical misconfiguration within a major organization during a general Google dorking exercise and subsequently…Aug 18, 20241Aug 18, 20241
Attacking Active Directory Certificate Services (ADCS) and Escalating PrivilegesIntroduction: During a security assessment of an AD infrastructure, I have discovered significant vulnerabilities within the Active…Aug 17, 20241Aug 17, 20241
Default Credentials Result in 100% Comprehensive Compromise and Data BreachIntroduction: In this article, we will explore a real-world practical scenario from an external red team assessment where the objective was…Aug 17, 2024Aug 17, 2024
Journey to Domain Admin and Enterprise Admin: A Practical Internal Red Team ScenarioIntroduction:Aug 17, 20241Aug 17, 20241