techspence Profile Banner
spencer Profile
spencer

@techspence

Followers
11K
Following
102K
Media
2K
Statuses
39K

🛡️Empowering defenders & dismantling threats | Ethical Threat | pentester @securit360 | host @cyberthreatpov | SWAG https://t.co/AFJtZQcti7

newsletter for defenders ⬇️
Joined November 2010
Don't wanna be here? Send us removal request.
@techspence
spencer
4 months
🏋️‍♂️The cybersecurity equivalent of doing half reps at the gym is implementing security controls just enough to say they exist but not enough for them to be effective. Examples:.- MFA on some accounts, but not all.- EDR installed, but not monitored.- Weak passwords allowed,.
44
60
429
@techspence
spencer
1 hour
RT @PyroTek3: From a recent Active Directory Security Assessment (ADSA) I did:. * AD admin accounts with passwords older than 5 years (like….
0
24
0
@techspence
spencer
6 hours
Block RMMs, sleep better at night. What could be easier than that?.
5
8
64
@techspence
spencer
8 hours
Yeah!.
@domchell
Dominic Chell 👻
9 hours
Ban ScreenConnect now.
0
0
3
@techspence
spencer
8 hours
My boss scared me the other day…. He said he’s seeing more and more orgs get rid of AD. There are pros and cons to both directions of course and it highly depends on the business…. but I don’t believe any one is inherently better.
15
2
30
@techspence
spencer
8 hours
0
1
0
@techspence
spencer
9 hours
Instead of giving Domain Users FullControl over file shares, create security groups for specific groups of users for specific permissions, for example:. ActPdriveRW - Accounting, p-drive (finance share), read-write access. On the file share, grant read/write access for this.
12
10
84
@techspence
spencer
9 hours
Lets goooo
Tweet media one
@CroodSolutions
Mike Manrod
11 hours
Tweet media one
3
2
15
@techspence
spencer
9 hours
😂😂😂.
@SwiftOnSecurity
SwiftOnSecurity
13 hours
I frankly do not understand how online video games coded in C++ are ever safe to run at all.
0
0
2
@techspence
spencer
11 hours
Internal pentest findings that shouldn't exist in 2025. - credentials on file shares/sharepoint/dms.- local admin password reuse.- kerberoastable domain admins.- ADCS Misconfigs.- spooler running on DCs.- lack of powershell restrictions.- EDR missing on hosts.
21
45
321
@techspence
spencer
13 hours
EDR is great… but it can't go everywhere. It can’t be disguised as private messages in Slack.It can’t plant documents in Teams.It can’t be installed on ICS. Deception can go where traditional endpoint security cannot. .
9
9
73
@techspence
spencer
1 day
RT @jamieantisocial: this part.
Tweet media one
0
20
0
@techspence
spencer
1 day
So much of researching & troubleshooting is just being patient enough to read long answers on reddit and stack overflow or I guess now days a bunch of AI responses. and being able to detect the bs and wade through it to find the "truth" or the answer or whatever the heck it is.
2
2
16
@techspence
spencer
1 day
Detecting patterns is equally as important as detecting payloads.
6
5
44
@techspence
spencer
1 day
RT @gossy_84: The ROI of deception technology is often overlooked, especially when you factor in the costs of alert fatigue and the high-sk….
0
1
0
@techspence
spencer
1 day
Some people may find it strange to hear that I like to use ADExplorer during internal pentests. I use it for a few (non-exhaustive) reasons:. 1. It's an efficient way to browse AD without AD powershell cmdlets.2. I can right click and browse permissions on users, computers, OUs,.
5
13
140
@techspence
spencer
2 days
dude is incredible, halo holds a special place in my childhood and my heart, this is so awesome hah.
@JakeSucky
Jake Lucky
2 days
Kai Cenat has Halo Spartans crashing through his wall for his stream😭. Halo is so back
0
0
11
@techspence
spencer
2 days
😂😂😂😂.
@nickvangilder
Nick VanGilder
2 days
Tweet media one
1
0
18
@techspence
spencer
2 days
Failure is the best teacher. Lean into things that scare you, that are new, that you're not comfortable with. Get over yourself in thinking anyone cares about your losses/failures. People have their own lives their own stuff going on to care.
6
6
46
@techspence
spencer
2 days
When you’ve been sold a hammer (EDR) everything looks like a nail….
4
5
22
@techspence
spencer
2 days
Not a silver bullet.Not what you do first if your env is in shambles.Not going to “block” attacks. Agreed. 100%. But we say the same things about other security products. Edr and deception serve different purposes and therefore have different capabilities . But….Deception.
@techspence
spencer
2 days
Deception is 10x better ROI than EDR and it's not used nearly as much as it should be. Prove me wrong. .
1
0
5