<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[7 Minute Security's Substack]]></title><description><![CDATA[Where I share what I'm learning about penetration testing, blue-teaming and being the owner of a cybersecurity SMB!]]></description><link>https://www.7minsec.club</link><image><url>https://substackcdn.com/image/fetch/$s_!Jlmz!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd5e61286-8e46-43fd-8d4e-d7f83119f472_363x363.png</url><title>7 Minute Security&apos;s Substack</title><link>https://www.7minsec.club</link></image><generator>Substack</generator><lastBuildDate>Tue, 05 May 2026 11:40:06 GMT</lastBuildDate><atom:link href="https://www.7minsec.club/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[Brian Johnson]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[7minsec@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[7minsec@substack.com]]></itunes:email><itunes:name><![CDATA[Brian Johnson]]></itunes:name></itunes:owner><itunes:author><![CDATA[Brian Johnson]]></itunes:author><googleplay:owner><![CDATA[7minsec@substack.com]]></googleplay:owner><googleplay:email><![CDATA[7minsec@substack.com]]></googleplay:email><googleplay:author><![CDATA[Brian Johnson]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[We'll be back in April!]]></title><description><![CDATA[Thanks for your patience]]></description><link>https://www.7minsec.club/p/well-be-back-in-april</link><guid isPermaLink="false">https://www.7minsec.club/p/well-be-back-in-april</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Mon, 23 Mar 2026 20:27:47 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Jlmz!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd5e61286-8e46-43fd-8d4e-d7f83119f472_363x363.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hi friends, in our last post I announced a break from 7MinSec.club to focus on helping our local community/neighbors.  I detailed the specifics of my break in these three podcast episodes:</p><ul><li><p><a href="https://7minsec.com/blog/2026/02/27/7ms-711-how-to-secure-your-community/">7MS #711: How to Secure Your Community</a></p></li><li><p><a href="https://7minsec.com/blog/2026/03/06/7ms-712-how-to-secure-your-community-part-2/">7MS #712: How to Secure Your Community &#8211; Part 2</a></p></li><li><p><a href="https://7minsec.com/blog/2026/03/13/7ms-713-how-to-secure-your-community-part-3/">7MS #713: How to Secure Your Community &#8211; Part 3</a></p></li></ul><p>I&#8217;m getting back into the regular swing of things now, and plan on posting regular 7MinSec.club content starting in April.  I&#8217;m not sure if I&#8217;ll go back to a strict &#8220;Tuesday TOOLSday&#8221; schedule we used to have.  I&#8217;m entertaining the idea of being a bit more frequent in posting throughout the week, rather than a formal big post on Tuesdays.  Either way, thanks for your patience and I look forward to getting back into the swing of things in April.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/well-be-back-in-april/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/well-be-back-in-april/comments"><span>Leave a comment</span></a></p><p>Brian</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p></p>]]></content:encoded></item><item><title><![CDATA[7MinSec.club is taking a break]]></title><description><![CDATA[We'll be back...]]></description><link>https://www.7minsec.club/p/7minsecclub-is-taking-a-break</link><guid isPermaLink="false">https://www.7minsec.club/p/7minsecclub-is-taking-a-break</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Tue, 13 Jan 2026 16:10:58 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Jlmz!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd5e61286-8e46-43fd-8d4e-d7f83119f472_363x363.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hello friends.  I&#8217;m pushing the pause button on this Substack for the time being.  I work in the Twin Cities area and there&#8217;s a lot of work to do to take care of my family, friends, neighbors and community.  I appreciate your support and look forward to resuming our Tuesday TOOLSdays and other content as soon as possible.</p><p>-Brian</p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: eramba - a free GRC tool]]></title><description><![CDATA[Powerful and priced right!]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-eramba-a-free-grc</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-eramba-a-free-grc</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Tue, 06 Jan 2026 16:03:07 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/183281604/dc3e898254b977b7b1b2248b8d846391.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Happy new year!  Today I give you a quick getting-started guide for <a href="https://www.eramba.org/">eramba</a> (not a partner/sponsor), a &#8220;community driven GRC solution that doesn&#8217;t break the bank.&#8221;  It&#8217;s pretty easy to get installed via <a href="https://www.eramba.org/learning/courses/12/episodes/274">docker</a>, and I added some personal instructions/tweaks of my own on our <a href="https://bpatty.rocks/software/eramba/">BPATTY</a> project.  Eramba looks super feature-packed, has a huge documentation library (complete with an accompanying <a href="https://www.eramba.org/learning">video series</a>), and even includes a beefy <a href="https://www.eramba.org/grc-templates">templates library</a> full of policies, compliance frameworks and more.</p><p>Enjoy!</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p>-Brian</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p></p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: wifi pentesting with USB adapters and Proxmox]]></title><description><![CDATA[Making all the picky components work together for pwnage]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-wifi-pentesting</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-wifi-pentesting</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Tue, 30 Dec 2025 16:02:07 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/182956137/d86f7f9ee7d4dde796d1487d7fd9ea27.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Today I give a quick primer on how to use a USB wifi card (such as the <a href="https://www.amazon.com/Panda-Wireless-PAU09-Adapter-Antennas/dp/B01LY35HGO">Panda PAU09</a>) with Proxmox and the <a href="https://bpatty.rocks/hardware/usb-adapters/">monitor mode script (and other tips)</a> to successfully position yourself for maximum wifi pentest pwnage!  </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p>Comments/questions/concerns?</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/tuesday-toolsday-wifi-pentesting/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/tuesday-toolsday-wifi-pentesting/comments"><span>Leave a comment</span></a></p><p>Anything you want me to know?</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p>Thanks,</p><p>-Brian</p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: how to fix the ESC8 vulnerability]]></title><description><![CDATA[ADCS vulns are everywhere!]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-how-to-fix-the-esc8</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-how-to-fix-the-esc8</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Tue, 23 Dec 2025 15:02:46 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/182267259/3fa2d15e05e47f1552e21cff57f6c4c2.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>This week I jump over to the blue team side of the world and walk through how to find, attack and fix the ADCS ESC8 vulnerability!  Microsoft has some guidance on various cert fix-ups <a href="https://learn.microsoft.com/en-us/defender-for-identity/security-posture-assessments/certificates">here</a> as well.  During our <a href="https://7minsec.com/services/penetration-testing/">penetration tests</a>, we see a <em>ton</em> of the ESC1 and ESC8 vulnerabilities.  You should also review the <a href="https://specterops.io/blog/2021/06/17/certified-pre-owned/">excellent article/research from SpecterOps</a> on finding/fixing all flavors of ESC vulnerabilities.  Lastly, I&#8217;ve had many clients report that the <a href="https://github.com/jakehildreth/Locksmith">Locksmith</a> tool is excellent for finding, understanding,  and even <em>fixing</em> ESC vulnerabilities in your environment.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/tuesday-toolsday-how-to-fix-the-esc8/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/tuesday-toolsday-how-to-fix-the-esc8/comments"><span>Leave a comment</span></a></p><p>Thanks,</p><p>-Brian</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p></p>]]></content:encoded></item><item><title><![CDATA[LPLITE:GOAD pentesting course has launched!]]></title><description><![CDATA[Let's hack things together in January]]></description><link>https://www.7minsec.club/p/lplitegoad-pentesting-course-has</link><guid isPermaLink="false">https://www.7minsec.club/p/lplitegoad-pentesting-course-has</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Thu, 18 Dec 2025 13:07:32 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Eae9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Eae9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Eae9!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!Eae9!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!Eae9!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!Eae9!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Eae9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:203054,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.7minsec.club/i/181913452?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Eae9!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!Eae9!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!Eae9!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!Eae9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff85f2cba-f886-4b27-8623-7395134d61ea_1920x1080.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Hello friends!  I&#8217;m <em>super </em>excited to share that our brand new Active Directory pentesting course, Light Pentest LITE:GOAD (Live Interactive Training Experience: Game of Active Directory) is now open for enrollment!</p><p><strong>When</strong>: Tuesday, January 27 - Thursday, January 29 (9:00 a.m. - 1:00 p.m. each day)</p><p><strong>Where</strong>: online via a Web browser (nothing to download/install on your end!)</p><p>Where to sign up and get more details:</p><p><a href="https://training.7minsec.com/events/90c5636a-a642-45f1-acc3-9c6c547fd887">https://training.7minsec.com/events/90c5636a-a642-45f1-acc3-9c6c547fd887</a></p><p>If you have any comments/questions/concerns, please let me know!</p><p>Thanks,</p><p>Brian</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/lplitegoad-pentesting-course-has/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/lplitegoad-pentesting-course-has/comments"><span>Leave a comment</span></a></p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p></p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: coercion attacks against Windows 11]]></title><description><![CDATA[I thought that was a dead attack path...but it's not!]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-coercion-attacks</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-coercion-attacks</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Tue, 16 Dec 2025 16:01:51 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/181798525/bcd13862f94981b493a815b63c969bd2.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Hey friends!  In today&#8217;s Tuesday TOOLSday I demonstrate an attack that I thought Windows 11 and higher was hardened against.  On many a internal pentest you might find a Windows system with WebClient enabled - thus (potentially) opening the opportunity to coerce authentication out of that system with a relay attack, thus giving you excessive rights on that victim machine.</p><p>My understanding as of a few months ago, though, is that Windows 11 OS and greater were immune to that type of coercion.  Turns out I was wrong - check out <a href="https://github.com/Hypnoze57/rpc2efs">https://github.com/Hypnoze57/rpc2efs</a> and today&#8217;s video to see Windows 11 coercion in action!</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/tuesday-toolsday-coercion-attacks/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/tuesday-toolsday-coercion-attacks/comments"><span>Leave a comment</span></a></p><p>Thanks,</p><p>Brian</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p></p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: I'm out of commission]]></title><description><![CDATA[Sorry!]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-im-out-of-commission</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-im-out-of-commission</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Tue, 09 Dec 2025 16:02:51 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Jlmz!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd5e61286-8e46-43fd-8d4e-d7f83119f472_363x363.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hello friends,</p><p>Sorry (mom), no Tuesday TOOLSday video today (maybe later this week though).  My calendar went a bit sideways with work and personal things.</p><p>On the topic of Tuesday TOOLSday, though, I&#8217;ve started to take some of the videos from these streams and bake them into my BPATTY (Brian&#8217;s Pentesting And Technical Tips for You) site for easier reference:</p><p><a href="https://bpatty.rocks/tags/video/">https://bpatty.rocks/tags/video/</a> </p><p>Have a great week!</p><p>-Brian</p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: DIY pentest dropbox tips]]></title><description><![CDATA[Make remote access to your dropbox even easier]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-diy-pentest-dropbox</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-diy-pentest-dropbox</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Thu, 04 Dec 2025 15:16:04 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/180613750/ced38bd38278e33cf2d60058c421fb1c.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>This week I show some tips to help make pentest dropbox deployments easier and faster, and <em>also</em> share a shift I&#8217;m making in remote access to these boxes.  The skinny:</p><ul><li><p>Using a <a href="https://community-scripts.github.io/ProxmoxVE/scripts?id=twingate-connector">Proxmox Twingate LXC</a> makes persistent remote access easy.  You can leave this slim VM on your Proxmox box at all times, and <em>not</em> have to nuke and rebuild it with every new customer project!</p></li><li><p>With a little scripting and some use of the <em>qm</em> command at the Proxmox SSH command line, you can set the admin password for both VMs and also set the VMs to start upon Proxmox boot (in whatever order you choose).</p></li></ul><p>Have fun!</p><p>-Brian</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/tuesday-toolsday-diy-pentest-dropbox/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/tuesday-toolsday-diy-pentest-dropbox/comments"><span>Leave a comment</span></a></p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p></p>]]></content:encoded></item><item><title><![CDATA[ Tuesday TOOLSday: SQL server defense 101]]></title><description><![CDATA[Don't let attackers relay free high-priv SQL creds!]]></description><link>https://www.7minsec.club/p/fc8</link><guid isPermaLink="false">https://www.7minsec.club/p/fc8</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Thu, 27 Nov 2025 13:07:40 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/180037241/d0bf6b4ffa3b4a375c95ef1a9872fa9b.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Today we cover an easy way you can defend against a common SQL server attack - specifically by <em>disabling</em> stored procedures that attackers and pentesters use to give themselves free AD credentials.  I&#8217;ve got a write-up on the defensive commands here: <a href="https://bpatty.rocks/blueteam/sql/">https://bpatty.rocks/blueteam/sql/</a>.  </p><p>While you&#8217;re here, why not subscribe?</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p>Comment/question/concern for me?</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p>Thanks,</p><p>Brian</p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: Lithnet AD Password Protection]]></title><description><![CDATA[Keep bad passwords out of your AD for free? Yes please.]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-lithnet-ad-password</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-lithnet-ad-password</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Thu, 20 Nov 2025 13:07:38 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/179284862/a967c9f5c1e2bf922c10e2c2fe6696ae.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>This week I came across <a href="https://lithnet.io/products/password-protection">Lithnet&#8217;s Password Protection for Active Directory</a> (not a sponsor!).  It&#8217;s awesome!  It&#8217;s a <em>free</em> utility you can install on your domain controllers to block all of the Have I Been Pwned password list, as well as any custom password lists and words you want to manually import.  Perhaps my favorite feature is the ability to add a banned word like <em>7minutesecurity</em> and have it automatically block variations such as:</p><ul><li><p><em>7minutesecurity!</em></p></li><li><p><em>7minutesecurity2025!</em></p></li><li><p><em>7m1nut3s3cur1ty2028</em></p><p></p></li></ul><p>Check it out, and while you&#8217;re here, why not subscribe?</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p>Comment/question for me?</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p>Oh and before I forget, I&#8217;ve got a cheat sheet write-up on installing password protection <a href="https://bpatty.rocks/software/lithnetpp/">here</a>.</p><p>Thanks,</p><p>-Brian</p>]]></content:encoded></item><item><title><![CDATA[Light Pentest LITE:GOAD logo winner announced!]]></title><description><![CDATA[And it was hard to choose just one]]></description><link>https://www.7minsec.club/p/light-pentest-litegoad-logo-winner</link><guid isPermaLink="false">https://www.7minsec.club/p/light-pentest-litegoad-logo-winner</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Mon, 17 Nov 2025 13:07:55 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!-vwJ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hello friends,</p><p>Just wanted to share with you that we landed on a winner for our Light Pentest LITE:GOAD logo contest - check it out:</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!-vwJ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!-vwJ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg 424w, https://substackcdn.com/image/fetch/$s_!-vwJ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg 848w, https://substackcdn.com/image/fetch/$s_!-vwJ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!-vwJ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!-vwJ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg" width="1456" height="1361" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1361,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1793675,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.7minsec.club/i/178897494?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!-vwJ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg 424w, https://substackcdn.com/image/fetch/$s_!-vwJ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg 848w, https://substackcdn.com/image/fetch/$s_!-vwJ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!-vwJ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffd7b1ce4-a053-4eac-ad5e-71ef1d276e9f_4665x4361.jpeg 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Ohhhh I love it so much!   This will start getting worked into our <a href="https://7minsec.com/services/training/#720ef3d3901ebbd19">LPLITE:GOAD</a> page, and you&#8217;ll <em>definitely </em>see more of it if you attend the first live class, which is coming in January, 2026.  I&#8217;ll announce the class sign-up link here in Substack first, so please subscribe if you haven&#8217;t already:</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p>And don&#8217;t forget to join us for tomorrow&#8217;s Tuesday TOOLSday where we&#8217;ll be showcasing <a href="https://github.com/lithnet/ad-password-protection">Lithnet AD password protection</a>.</p><p>Thanks,</p><p>-Brian</p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: LAPS quick install]]></title><description><![CDATA[An essential FREE blue team control for your Active Directory]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-laps-quick-install</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-laps-quick-install</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Thu, 13 Nov 2025 13:07:37 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/178605410/ebbe2a8596d2eb6b0d431ceab6c30e53.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>This week we did a super quick install/demo of <a href="https://learn.microsoft.com/en-us/windows-server/identity/laps/laps-overview">LAPS (Local Administrator Password Solution)</a>.  LAPS is built right into Active Directory and gives you a free/easy way to assign all of your endpoints a <em>unique</em> local Administrator account password, thus making it harder for hackers who compromise <em>one</em> endpoint to compromise <em>all</em> endpoints.</p><p>Enjoying this content?</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p>Questions/comments/concerns for me?</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p>Thanks,<br></p><p>Brian</p><div class="install-substack-app-embed install-substack-app-embed-web" data-component-name="InstallSubstackAppToDOM"><img class="install-substack-app-embed-img" src="https://substackcdn.com/image/fetch/$s_!Jlmz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd5e61286-8e46-43fd-8d4e-d7f83119f472_363x363.png"><div class="install-substack-app-embed-text"><div class="install-substack-app-header">Get more from Brian Johnson in the Substack app</div><div class="install-substack-app-text">Available for iOS and Android</div></div><a href="https://substack.com/app/app-store-redirect?utm_campaign=app-marketing&amp;utm_content=author-post-insert&amp;utm_source=7minsec" target="_blank" class="install-substack-app-embed-link"><button class="install-substack-app-embed-btn button primary">Get the app</button></a></div>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: Pretender]]></title><description><![CDATA[A nice alternative to mitm6]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-pretender</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-pretender</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Thu, 06 Nov 2025 13:07:51 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/177994951/164f79889191bfde21b71397f0a547bf.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>This week I gave a quick intro of <a href="https://github.com/RedTeamPentesting/pretender">pretender</a>, a tool that has the powers of mitm6 + the spoofing capabilities of Responder.  Specifically, I demonstrated how to selectively spoof a hostname that systems are querying but for which no DNS record exists.  I&#8217;m <em>definitely</em> going to play with this more and use it on future assessments.  There&#8217;s a great overview of the tool with some examples and videos <a href="https://blog.redteam-pentesting.de/2022/introducing-pretender/">here</a>.  </p><p>Do you use pretender on assessments?</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/tuesday-toolsday-pretender/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/tuesday-toolsday-pretender/comments"><span>Leave a comment</span></a></p><p>Questions/comments/concerns for me?</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p>Thanks,</p><p>-Brian</p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: Kerberoasting Kleanup]]></title><description><![CDATA[Nuke those old SPN and embrace service account best practices]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-kerberoasting-kleanup</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-kerberoasting-kleanup</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Thu, 30 Oct 2025 12:07:56 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/177377207/664a8e044eb52ecfc16dd958a69647d2.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Hello friends!  This week I talked about how you can clean up old Active Directory SPNs.  The main page with all the links is over at our <a href="https://bpatty.rocks/blueteam/kerberoasting/">BPATTY repository</a>, but here are the links we talked about during the livestream:</p><ul><li><p>wald0&#8217;s <a href="https://x.com/_wald0/status/1562871258190348289?lang=en">tweet</a> about Kerberoasting cleanup</p></li><li><p>Microsoft&#8217;s <a href="https://learn.microsoft.com/en-us/archive/technet-wiki/52081.active-directory-a-practical-way-to-clean-up-dead-spns-in-active-directory">practical way to clean up dead SPNs in Active Directory</a></p></li><li><p><a href="https://github.com/MahdiTehrani/Get-SPNReport/blob/d6cf62aade7d681e10d828db0697226cbafb3d40/Get-SPNReport.ps1">Script</a> to cleanup dead SPNs</p></li><li><p><a href="https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2012-r2-and-2012/cc731241(v=ws.11)">setspn</a> - a tool to add/modify/delete SPNs</p><p> </p></li></ul><p>Enjoy, and why you&#8217;re here, why not:</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p>Thanks,</p><p>Brian</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: egress filtering]]></title><description><![CDATA[A quick way to check what's allowed from your internal > external network]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-egress-filtering</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-egress-filtering</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Tue, 21 Oct 2025 15:02:56 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Jlmz!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd5e61286-8e46-43fd-8d4e-d7f83119f472_363x363.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;c501fa6e-c535-405d-b21a-ba04bed7cd32&quot;,&quot;duration&quot;:null}"></div><p>Hey friends,</p><p>I&#8217;m on the road this week but didn&#8217;t want to miss our Tuesday TOOLSday!  Today we talk about egress filtering (with the help of <a href="https://bpatty.rocks/blueteam/egressfiltering/">this BPATTY article</a>) and talk about:</p><ul><li><p>What traffic you might want to <em>hard block</em> from traversing your internal &gt; external network.</p></li><li><p>What traffic you might want to filter so that only specific hosts can send it outbound.</p></li><li><p>A quick demo of <a href="https://github.com/sensepost/go-out">go-out</a> to test egress filtering.</p></li></ul><p>Enjoy!</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/tuesday-toolsday-egress-filtering/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/tuesday-toolsday-egress-filtering/comments"><span>Leave a comment</span></a></p><p>-Brian</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p></p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: benefits of a security ticketing system]]></title><description><![CDATA[Ticketing + inventorying = good security]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-benefits-of-a-security</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-benefits-of-a-security</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Wed, 15 Oct 2025 12:07:32 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/176142179/c4a9b499cb7ad974234d579889e76464.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p> This week I talked through how 7MinSec is using a security ticketing system (<a href="https://jitbit.com">JitBit</a> specifically but they&#8217;re not a sponsor/advertiser) to help manage our internal infosec program.  Specifically, we use tickets to:</p><ul><li><p>Manage an asset inventory</p></li><li><p>Track incidents</p></li><li><p>Generate automatic tickets for important system maintenance (backups, patching, etc.)</p></li></ul><p>Do you use a system like this to help manage your internal infosec program?</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/tuesday-toolsday-benefits-of-a-security/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/tuesday-toolsday-benefits-of-a-security/comments"><span>Leave a comment</span></a></p><p>Any thoughts you want to share directly?</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p>Thanks,</p><p>Brian</p><div class="install-substack-app-embed install-substack-app-embed-web" data-component-name="InstallSubstackAppToDOM"><img class="install-substack-app-embed-img" src="https://substackcdn.com/image/fetch/$s_!Jlmz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd5e61286-8e46-43fd-8d4e-d7f83119f472_363x363.png"><div class="install-substack-app-embed-text"><div class="install-substack-app-header">Get more from Brian Johnson in the Substack app</div><div class="install-substack-app-text">Available for iOS and Android</div></div><a href="https://substack.com/app/app-store-redirect?utm_campaign=app-marketing&amp;utm_content=author-post-insert&amp;utm_source=7minsec" target="_blank" class="install-substack-app-embed-link"><button class="install-substack-app-embed-btn button primary">Get the app</button></a></div>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: mssqlkaren]]></title><description><![CDATA[Stealing SCCM creds with Karen's help!]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-mssqlkaren</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-mssqlkaren</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Tue, 07 Oct 2025 14:55:26 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/175429340/11e848578753e80ed1749096e6f15530.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Hey friends, in <a href="https://7minsec.com/blog/2025/10/03/7ms-695-tales-of-pentest-pwnage-part-78/">last week&#8217;s podcast</a> I talked about a fun pentest where I relayed an SCCM machine account cred to a SCCM server with SQL installed, then dumped delicious information out of the database - which contained clear text SCCM creds!  Today I show this in more detail, and how the credential stealing process was made much easier with the help of <a href="https://github.com/garrettfoster13/mssqlkaren">mssqlkaren</a>.  </p><p>Other reference links:</p><ul><li><p><a href="https://7minsec.com/blog/2025/10/03/7ms-695-tales-of-pentest-pwnage-part-78/">7MS #695</a> - where we talk about this attack in more detail</p></li><li><p><a href="https://www.youtube.com/watch?v=gDpl_Ob0YZI&amp;t=2356s">Pentesting GOAD SCCM</a> - shows how to make a SQL connection to an SCCM server (I was wrong in today&#8217;s video in that we didn&#8217;t actually show an SCCM <em>relay</em> in the YouTube video, but at least you can see things from a SQL prompt POV)</p></li></ul><p>Enjoy!</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p>Brian</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p></p>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: coercing HTTP auth w/scheduled tasks]]></title><description><![CDATA[Schtasks continue to be sneaky!]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-coercing-http-auth</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-coercing-http-auth</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Fri, 03 Oct 2025 12:07:09 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/174926481/d2cf66573765779dc33d734d6c615bdb.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Hello friends!  In this week&#8217;s Tuesday TOOLSday we continue the theme of using <a href="https://bpatty.rocks/cmd/windows/schtasks/">schtasks</a> for evil - this time by camping out on a WinRM connection with local admin access, and then coercing HTTP authentication from a logged-in domain admin account to give us full control of the domain.</p><p>Hey and while you&#8217;re here, why not&#8230;</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/subscribe?"><span>Subscribe now</span></a></p><p>Thoughts to share?</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/tuesday-toolsday-coercing-http-auth/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/tuesday-toolsday-coercing-http-auth/comments"><span>Leave a comment</span></a></p><p>Questions for me?</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><p>Brian</p><div class="install-substack-app-embed install-substack-app-embed-web" data-component-name="InstallSubstackAppToDOM"><img class="install-substack-app-embed-img" src="https://substackcdn.com/image/fetch/$s_!Jlmz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd5e61286-8e46-43fd-8d4e-d7f83119f472_363x363.png"><div class="install-substack-app-embed-text"><div class="install-substack-app-header">Get more from Brian Johnson in the Substack app</div><div class="install-substack-app-text">Available for iOS and Android</div></div><a href="https://substack.com/app/app-store-redirect?utm_campaign=app-marketing&amp;utm_content=author-post-insert&amp;utm_source=7minsec" target="_blank" class="install-substack-app-embed-link"><button class="install-substack-app-embed-btn button primary">Get the app</button></a></div>]]></content:encoded></item><item><title><![CDATA[Tuesday TOOLSday: coercing SMB auth w/scheduled tasks]]></title><description><![CDATA[Didn't lead to domain admin, but I'll still take it!]]></description><link>https://www.7minsec.club/p/tuesday-toolsday-coercing-smb-auth</link><guid isPermaLink="false">https://www.7minsec.club/p/tuesday-toolsday-coercing-smb-auth</guid><dc:creator><![CDATA[Brian Johnson]]></dc:creator><pubDate>Fri, 26 Sep 2025 15:33:41 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/174336367/cf5b21c2544af271185b620764a63680.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Today I demonstrate a method to leverage local admin access to coerce SMB auth out of that system, on behalf of a higher-privilege user, and &#8220;catch&#8221; the request with downgraded authentication you can crack using something like <a href="https://vast.ai/">Vast.ai</a>.  </p><p>Enjoy!</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.7minsec.club/p/tuesday-toolsday-coercing-smb-auth/comments&quot;,&quot;text&quot;:&quot;Leave a comment&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.7minsec.club/p/tuesday-toolsday-coercing-smb-auth/comments"><span>Leave a comment</span></a></p><p>Brian</p><div class="directMessage button" data-attrs="{&quot;userId&quot;:112675607,&quot;userName&quot;:&quot;Brian Johnson&quot;,&quot;canDm&quot;:null,&quot;dmUpgradeOptions&quot;:null,&quot;isEditorNode&quot;:true}" data-component-name="DirectMessageToDOM"></div><div class="install-substack-app-embed install-substack-app-embed-web" data-component-name="InstallSubstackAppToDOM"><img class="install-substack-app-embed-img" src="https://substackcdn.com/image/fetch/$s_!Jlmz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd5e61286-8e46-43fd-8d4e-d7f83119f472_363x363.png"><div class="install-substack-app-embed-text"><div class="install-substack-app-header">Get more from Brian Johnson in the Substack app</div><div class="install-substack-app-text">Available for iOS and Android</div></div><a href="https://substack.com/app/app-store-redirect?utm_campaign=app-marketing&amp;utm_content=author-post-insert&amp;utm_source=7minsec" target="_blank" class="install-substack-app-embed-link"><button class="install-substack-app-embed-btn button primary">Get the app</button></a></div>]]></content:encoded></item></channel></rss>