hi^^ Profile
hi^^

@collysucker

Followers
227
Following
3K
Media
42
Statuses
766

Joined June 2009
Don't wanna be here? Send us removal request.
@collysucker
hi^^
5 days
RT @cyb3rops: Citrix forgot to tell you CVE-2025–6543 has been used as a zero day since May 2025 | by Kevin Beaumont. .
Tweet card summary image
doublepulsar.com
A look into what action Netscaler customers need to take ASAP.
0
155
0
@collysucker
hi^^
15 days
. that they are finally working on it and making it transparent. Source: (2/2). #Microsoft #azure #infosec.
2
8
88
@collysucker
hi^^
15 days
Microsoft openly admitting they have not(!) had MFA, network segmentation, least privilege, software lifecycle, jump-servers, asset- and software-inventory etc for Azure PROD for years and they are not there yet. This whole report is just so scary. At the same time, good. (1/2)
Tweet media one
Tweet media two
Tweet media three
Tweet media four
10
133
959
@collysucker
hi^^
22 days
Microsoft Azure Portal CVE-2025-53792 CVSSv3.1 9.1. Afaik Microsoft claims the vulnerability was not public and no customer was affected. However Microsoft does not answer if they would have to logs/forensics to answer that. #infosec #azure #microsoft.
0
1
4
@collysucker
hi^^
3 months
RT @malmoeb: I don’t know how many times I’ve discussed this topic before, but due to recent events, I'm bringing it up again: One of our c….
0
51
0
@collysucker
hi^^
3 months
RT @cyb3rops: Windows SMB Client Elevation of Privilege Vulnerability. CVSS Score: 8.8. Attack Vector: Network.Attack Complexity: Low.Privi….
0
125
0
@collysucker
hi^^
3 months
Splunk UseCase for detecting attacks against FortiGate firewalls:. #infosec #splunk #fortigate
Tweet media one
0
0
0
@collysucker
hi^^
3 months
CISA guidance for SIEM - with details about with which logs to start, from your AD, EDR, OS, Virtualization, Azure, AWS, GCP, Hardening, etc. Really useful 👍.
cisa.gov
This guidance is intended for organizations seeking to procure SIEM and SOAR platforms. 
0
0
1
@collysucker
hi^^
4 months
RT @cyb3rops: Google just patched a serious ⚠️ vulnerability (CVE-2025-4664) that allows attackers to steal sensitive tokens (like OAuth or….
0
177
0
@collysucker
hi^^
4 months
If it doesn't —> take action (e.g. contact Microsoft support & adjust backup parameters/rethink your desaster recovery process) (3/3). #azure #backup #desasterrecovery.
0
0
0
@collysucker
hi^^
4 months
Azure Backup doesn't show this — it keeps reporting that the backups are "green" (healthy). It's only when you try to restore them that it fails (error). So my tip is to test the Azure region failover with some test systems and then check whether the backup still works. (2/3).
1
0
0
@collysucker
hi^^
4 months
Tip: Test Azure backups & region failover. There is a known issue after an Azure region failover —> backups can become corrupted. That means in the event of a disaster affecting an Azure region, you may have no usable backup, putting you in a doubly bad situation. (1/3) #azure.
1
0
0
@collysucker
hi^^
4 months
RT @DebugPrivilege: I often get asked what to do after running !analyze -v on a kernel memory dump. If you're wondering what steps you coul….
0
32
0
@collysucker
hi^^
4 months
RT @cnotin: Microsoft hardened the Entra ID synchronization feature last year:.- restricted permissions on Directory Synchronization Accoun….
Tweet card summary image
tenable.com
Microsoft synchronization capabilities for managing identities in hybrid environments are not without their risks. In this blog, Tenable Research explores how potential weaknesses in these synchron...
0
32
0
@collysucker
hi^^
4 months
RT @DrAzureAD: If you haven't blocked device code authentication flow yet, do it now. Please, just do it! . @fabian_bader tells how to do t….
cloudbrothers.info
Deploy a conditional access policy that blocks device code flow
0
28
0
@collysucker
hi^^
4 months
RT @nas_bench: Introducing 🚀Eventlog Compendium 🚀. A new Streamlit app, that aims to be the go-to resource for understanding and playing wi….
0
106
0
@collysucker
hi^^
5 months
RT @olafhartong: Dear @MicrosoftAzure or @azuread teams, can you please make sure the casing of logged items is consistent?. Apart from wei….
0
11
0