Skip to content

Security Café

Security Research and Services

  • Things we do on a daily basis
    • Red Team (DORA/TIBER) exercises
    • Web Application Penetration Testing
    • Mobile Application Penetration Testing
    • Infrastructure Penetration Testing
    • Vulnerability Assessment
  • CVEs, Talks and Tools
  • Contact
  • About

Tag: NTLM

Weaponizing SMB Shares to Steal Domain Credentials

April 21, 2026 Alex Neacsu

In internal penetration tests and red team engagements, an account with write privileges over an SMB share can be your best bet to go further

Continue reading

Protecting Windows Credentials against Network Attacks

December 2, 2021 Stefan Tita

Over the years I’ve seen a lot of misconfigurations or a lack of configurations when it comes to protecting Windows credentials, hashes or Kerberos tickets.

Continue reading

Top Posts

  • Mobile Pentesting 101 – The Death of ADB Backup: Modern Data Extraction in 2026
  • My experience with the OSCP certification
  • Introduction to Windows shellcode development – Part 3
  • How to Install .ipa Files on iPhone Without Jailbreak
  • AWS CloudQuarry: Digging for Secrets in Public AMIs

Blog Stats

  • 709,378 hits

Follow us via Email

Enter your email address to follow this blog and receive notifications of new posts by email.

Join 157 other subscribers

Categories

  • Active Directory (5)
  • Announcements (2)
  • C2 (1)
  • Cloud Security (12)
    • aws (9)
    • Azure (3)
    • Kubernetes (1)
  • Conferences (4)
  • Embedded systems security (3)
    • IoT Pentesting (2)
  • Ethical Hacking (19)
  • General security (14)
  • IT Security Assurance (1)
  • IT Security Audit (3)
  • Metasploit (1)
  • Misc (21)
    • Artificial Intelligence (2)
    • Code Review (1)
    • CVE (1)
  • Mobile security (13)
  • Network security (8)
  • Operating systems (2)
  • Penetration Testing (25)
  • Pentest techniques (30)
  • Research (3)
  • Web security (13)
  • Wireless security (1)
Powered by WordPress.com.

Loading Comments...