Microsoft #Azure Exams just went live

Looks like some useful study guides here; > Microsoft #Azure [https://twitter.com/hashtag/Azure?src=hash&ref_src=twsrc%5Etfw] Exams just went live! ☁🎓 - AZ-303 Microsoft Azure Architect Technologies - AZ-304 Microsoft Azure Architect Design Check out my exam study guides to become a Azure Certified Solution Architect: Az-303: https://t.co/y5Lbm7HlF1 Az-304: https://t.co/1OPCVCGozy pic.twitter.com/Dszs24T8t3 [https://t.co/Dszs24T8t3] — Thomas Maurer (@ThomasMaurer) September 20, 2020 [https://…

Read More

A proof of concept exploit has been released for Windows Netlogon vulnerability CVE-2020-1472

A proof of concept exploit has been released for Windows Netlogon vulnerability CVE-2020-1472

> A proof of concept exploit has been released for Windows Netlogon vulnerability CVE-2020-1472. We expect it to be used. Install the patch and implement additional instructions in Microsoft article KB4557222. > A proof of concept exploit has been released for Windows Netlogon vulnerability CVE-2020-1472. We expect it to be used. Install the patch and implement additional instructions in Microsoft article KB4557222. https://t.co/dcnlwzdKML — NSA Cyber (@NSACyber) September 18, 2020 [https://t…

Read More

Secure system administration

Secure system administration advice from NCSC.  Good advise for setting up Privileged access workstations (PAWs) and bastion hosts. Secure system administrationDesign principles for IT and OT systems to help you develop and implement your own system management strategy to protect your most sensitive data. [https://www.ncsc.gov.uk/collection/secure-system-administration]…

Read More

Zerologon: CVE-2020-1472

> Speaking about CVE-2020-1472 - Just a periodic reminder to check the ACL permissions that have been set on your DC machine accounts in AD. If a non-DA has GenericAll (Full control) for example. It can reset the DC machine account password and later on pull a DCSync attack. > Speaking about CVE-2020-1472 - Just a periodic reminder to check the ACL permissions that have been set on your DC machine accounts in AD. If a non-DA has GenericAll (Full control) for example. It can reset the DC machine…

Read More

Many blogs tell you about what Microsoft E5 gets you (which is a lot), but none really write about “I bought Microsoft E5, where do I start?”

Some useful info here if you've upgraded to the [Office/Microsoft]365 E5 Plan > Many blogs tell you about what Microsoft E5 gets you (which is a lot), but none really write about “I bought Microsoft E5, where do I start?” I wrote a blog that outlines how you should implement the Microsoft E5 stack in a planned approach.https://t.co/sVyZLJMIfT — Frank McGovern (@FrankMcG) September 15, 2020 [https://twitter.com/FrankMcG/status/1305882301755199489?ref_src=twsrc%5Etfw] > Purchased Microsoft 365…

Read More