egre55 Profile Banner
egre55 Profile
egre55

@egre55

Followers
4K
Following
5K
Media
45
Statuses
2K

@PwnedLabs Founder | Educator | Cybersecurity

Get started in cyber ➡️
Joined May 2016
Don't wanna be here? Send us removal request.
@egre55
egre55
2 years
Cloud security folks!. If you're studying for an AWS, Microsoft or Google cloud security certification, did you know that @PwnedLabs has 30 FREE hands-on cloud security labs to supplement your learning?. That's over 40 hours real-world scenarios for red and blue - for free. Many
Tweet media one
2
126
460
@egre55
egre55
7 days
RT @vxunderground: Ohhhh, sneaky masquerading trick found in the wild and noted by @JAMESWT_WT. The Threat Actor replaces / with "ん", a Jap….
0
254
0
@egre55
egre55
9 days
RT @IAMERICAbooted: 6 places I check when I'm reviewing a company's external footprint and tech stack to get a basic understanding of the a….
0
42
0
@egre55
egre55
13 days
RT @PyroTek3: Active Directory computers should be reviewed about once a year. Old operating systems can hold back security progress like k….
0
185
0
@egre55
egre55
14 days
RT @IAMERICAbooted: FYI: You can use Purview Content Search to search mailboxes across your org and see what's in the junk folders. You ca….
0
6
0
@egre55
egre55
2 months
RT @cyb3rops: Finally, some technical insight into CitrixBleed 2 (CVE-2025-5777). Very useful for anyone looking to detect signs of exploit….
0
78
0
@egre55
egre55
2 months
RT @binaryz0ne: I’ve officially stepped away from my position at Champlain College & am now looking for new opportunities, in industry or a….
0
12
0
@egre55
egre55
2 months
RT @Hac10101: Automated Cloud Misconfiguration Testing — a tool to find misconfigs in GCP. Supports IAM, Cloud Run, App Engine, GCS, Compu….
Tweet card summary image
github.com
Automated Cloud Misconfiguration Testing. Contribute to pwnedlabs/automated-cloud-misconfiguration-testing development by creating an account on GitHub.
0
9
0
@egre55
egre55
2 months
RT @_sigil: 🕵️‍♀️ I'll be presenting "I SPy: Rethinking Entra ID research for new paths to Global Admin” at fwd:cloudsec June 30-July 1, al….
Tweet card summary image
youtube.com
fwd:cloudsec is a non-profit, conference on cloud security. At this conference you can expect discussions about all the major cloud platforms, both attack and defense research, limitations of...
0
19
0
@egre55
egre55
2 months
RT @Frichette_n: This is huge! AWS now requires specific claims in IAM role trust policies using OIDC for new/updated roles. This effective….
0
11
0
@egre55
egre55
2 months
RT @xbz0n: From no creds to Enterprise Admin: my new post shows how AD misconfigs can be chained for total domain control. No exploits need….
Tweet card summary image
xbz0n.sh
Active Directory remains the backbone of most corporate network environments. Despite being a mature technology with decades of security research behind it, ...
0
21
0
@egre55
egre55
3 months
RT @infosec_au: IP whitelisting is fundamentally broken. At @assetnote, we've successfully bypassed network controls by routing traffic thr….
Tweet card summary image
github.com
Abuse trust-boundaries to bypass firewalls and network controls - assetnote/newtowner
0
240
0
@egre55
egre55
3 months
RT @AustinLarsen_: New Google Threat Intelligence Group (GTIG) research by @dub5p: PRC-nexus 🇨🇳 #APT41 is leveraging innovative tactics, in….
0
34
0
@egre55
egre55
3 months
RT @vxunderground: Hahahahhahahaha . Unironically a good idea. It's so unbelievably stupid and it works. Depending on explorer layout, the….
0
209
0
@egre55
egre55
3 months
RT @snovvcrash: Why're we still doing the Impacket thing when @skelsec's stuff is so sick?. (just kidding ofc, Impa….
0
59
0
@egre55
egre55
3 months
RT @Hac10101: life update: working on some really cool security research work trying to find different ways to exploit gws to get into gcp,….
0
1
0
@egre55
egre55
3 months
RT @Oddvarmoe: Interesting post about UDL and REG files by @KillSwitchX7.
0
20
0