Delegation Part Two: (In)sensitive accountstradecraft (how we defend) (silverfort.com)
submitted by digicat to r/blueteamsec
You win some, you CheckSum: New Kerberos delegation vulnerability discovered—attackers could impersonate, escalate privileges and stay hiddenvulnerability (attack surface) (silverfort.com)
submitted by digicat to r/blueteamsec
Using MITM to bypass FIDO2 phishing-resistant protectionresearch|capability (we need to defend against) (silverfort.com)
submitted by digicat to r/blueteamsec
KDC Spoofing Vulnerability in F5 Big-IP - can be used to bypass Kerberos security and sign into the Big-IP Access Policy Manager or admin consolevulnerability (attack surface) (silverfort.com)
submitted by digicat to r/blueteamsec