<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Cloud Security on Be The Adversary</title><link>https://betheadversary.com/tags/cloud-security/</link><description>Recent content in Cloud Security on Be The Adversary</description><generator>Hugo</generator><language>en</language><lastBuildDate>Sun, 01 Dec 2024 00:00:00 +0000</lastBuildDate><atom:link href="https://betheadversary.com/tags/cloud-security/index.xml" rel="self" type="application/rss+xml"/><item><title>DeepSec and BSidesVienna: Attackers Aren't Breaking In, They're Logging In</title><link>https://betheadversary.com/posts/vienna24/</link><pubDate>Sun, 01 Dec 2024 00:00:00 +0000</pubDate><guid>https://betheadversary.com/posts/vienna24/</guid><description>&lt;h2 id="first-time-in-vienna-deepsec-bsidesvienna-schnitzel-and-cloud-security-realities">First Time in Vienna: DeepSec, BSidesVienna, Schnitzel, and Cloud Security Realities&lt;a href="#first-time-in-vienna-deepsec-bsidesvienna-schnitzel-and-cloud-security-realities" class="heading-anchor" aria-label="Anchor link to: First Time in Vienna: DeepSec, BSidesVienna, Schnitzel, and Cloud Security Realities">#&lt;/a>&lt;/h2>
&lt;p>Just got back from the stunning city of Vienna, where I had the pleasure of speaking at not one, but two fantastic conferences: &lt;a href="https://deepsec.net/">DeepSec&lt;/a> and &lt;a href="https://bsidesvienna.at/">BSidesVienna&lt;/a>. These events gather some of the best minds in security, all set against a backdrop of Viennese charm. And let me tell you, the setting didn’t disappoint. Between wandering the historic streets, stuffing myself with schnitzel, and discussing the finer points of cloud security, it was a weekend I won’t forget anytime soon.&lt;/p></description></item><item><title>CodeBlue 2024 Adventure</title><link>https://betheadversary.com/posts/codeblue24/</link><pubDate>Wed, 20 Nov 2024 00:00:00 +0000</pubDate><guid>https://betheadversary.com/posts/codeblue24/</guid><description>&lt;h2 id="the-codeblue-adventure-japan-snowflakes-and-cloudy-threats">The CodeBlue Adventure: Japan, Snowflakes, and Cloudy Threats&lt;a href="#the-codeblue-adventure-japan-snowflakes-and-cloudy-threats" class="heading-anchor" aria-label="Anchor link to: The CodeBlue Adventure: Japan, Snowflakes, and Cloudy Threats">#&lt;/a>&lt;/h2>
&lt;p>Last week, I checked off a major milestone in my career: speaking at the &lt;a href="https://codeblue.jp/">CodeBlue Conference&lt;/a> in Tokyo, Japan. For years, CodeBlue has been on my bucket list-that shining, slightly intimidating event where cybersecurity pros gather to share their wisdom. And let me tell you, it was as amazing as I&amp;rsquo;d imagined, with the added bonus of being my very first trip to Japan!&lt;/p></description></item><item><title>BSidesLV24: Adversaries Also Lift &amp; Shift: Cloud Threats Through the Eyes of an Adversary</title><link>https://betheadversary.com/posts/bsideslv24_talk/</link><pubDate>Sat, 05 Oct 2024 00:00:00 +0000</pubDate><guid>https://betheadversary.com/posts/bsideslv24_talk/</guid><description>&lt;p>In August, &lt;a href="https://www.linkedin.com/in/adi-belinkov-4b229372/">Adi Belnikov&lt;/a> and I had the opportunity to present at BSidesLV on a topic that’s become increasingly critical: the evolving nature of cloud threats from the adversary&amp;rsquo;s perspective. Our talk, titled &lt;strong>&amp;ldquo;Adversaries Also Lift &amp;amp; Shift: Cloud Threats Through the Eyes of an Adversary,&amp;rdquo;&lt;/strong> focused on the new landscape of cloud security and the way attackers are adapting faster than many defenders.&lt;/p>
&lt;p>Instead of &amp;ldquo;breaking in,&amp;rdquo; adversaries are now often &amp;ldquo;logging in.&amp;rdquo; They’re leveraging cloud-native features, misconfigurations, and legitimate services to execute sophisticated attacks that are much harder to detect. Our goal with this presentation was to shine a light on how attackers view cloud environments and the innovative methods they employ to exploit these spaces.&lt;/p></description></item><item><title>ADFSpray - when you need to make your own tools</title><link>https://betheadversary.com/posts/adfspray---when-you-need-to-make-your-own-tools/</link><pubDate>Thu, 23 Apr 2020 13:09:57 +0300</pubDate><guid>https://betheadversary.com/posts/adfspray---when-you-need-to-make-your-own-tools/</guid><description>&lt;p>TL;DR - new tool! &lt;a href="https://github.com/xFreed0m/adfspray">ADFSpray&lt;/a>&lt;/p>
&lt;p>I&amp;rsquo;ve needed to perform a password spraying attack against a Microsoft resource.
I&amp;rsquo;ve looked online and found various tools that looked promising (like &lt;a href="https://github.com/byt3bl33d3r/SprayingToolkit">this&lt;/a>, &lt;a href="https://github.com/dafthack/MSOLSpray/blob/master/MSOLSpray.ps1">this&lt;/a> and &lt;a href="https://github.com/Mr-Un1k0d3r/RedTeamScripts/blob/master/adfs-spray.py">this&lt;/a>, among others.&lt;/p>
&lt;p>I was happy to find many options across multiple languages, and I was confident they would save me some time,
but to my surprise, none of them worked as I needed (because of the environment I was testing, the tools themselves are working correctly).&lt;/p></description></item></channel></rss>