top of page
Search


Kali2026.1 Now Available
On Tuesday Kali 2026.1 was released. You can find all the details here: https://www.kali.org/blog/kali-linux-2026-1-release/ #kali #2026.1 #backtrack #pentesting #danweis #nexon
danielweis
Mar 26


Security Check your AD & Entra ID (AAD)
I'm often asked by IT folk, sysadmins, soc staff, and pentesters alike about some free tools they can run across their environments (or their clients) to identify security risks associated with Local Active Directory (LAD) & Entra ID (Formerly AAD). There are a stack of tools out there, but this blog post will cover some nice simple toolsets you can use in between your next pentest to make it more difficult for the pentesters during your next pentest and to improve your IAM
danielweis
Mar 11


Patch Tuesday upon us again!
Patch Tuesday is again upon us. This month the new SMB patch rolled out, enabling a new feature that enables support for auditing SMB...
danielweis
Sep 11, 2025


Citrix releases patches for latest Netscaler vulnerabilities
Citrix has released the fixes to address the latest 3 security flaws in NetScaler ADC and NetScaler Gateway, including CVE-2025-7775 that...
danielweis
Aug 28, 2025


Phishing through Services (PtS)
Most organisations these days are very familiar with phishing and Spear Phishing campaigns and are typically included in annual...
danielweis
Jun 13, 2025


Latest Cyberattacks targeting Palo Alto Devices
If you are seeing an increase in probing and authentication attempts against your PA's of late, its probably associated with this:...
danielweis
Apr 2, 2025


KnowBe4 2025 Phishing Threat Trends Report
KnowBe4 have just put out their 2025 phishing threat trends report which has some interesting findings. One in particular: "at least one...
danielweis
Mar 26, 2025


Microsoft New AI security blog post
Microsoft just put out a blog today on Securing AI models and the security controls they employ for training/learning etc. I know a lot...
danielweis
Mar 5, 2025


Android Monthly Patches Released
Google has released its monthly Android Security Bulletin for March 2025 to address a total of 44 vulnerabilities, including two that...
danielweis
Mar 5, 2025


Australian Government Bans Kaspersky
Took a long time for Australia to follow suit after the US and other countries, but we have now officially banned Kaspersky on government...
danielweis
Feb 25, 2025


Patch Tuesday is here again
Patch Tuesday is here again folks (yes I know its thursday). This months' patches address 63 Flaws, Including Two Under Active...
danielweis
Feb 13, 2025


New AI Content Credentials & Generative AI guidance
The ACSC, NSA and other international partners just put out some really good guidance and governance information on content credentials...
danielweis
Jan 31, 2025


Configuration data for 15,000 compromised fortinet firewalls leaked on darkweb
ICYMI last week, the belsen hacking group leaked configuration data (including plaintext creds) for 15,000 fortigate firewalls on the...
danielweis
Jan 28, 2025


Oracle Releases January Patches
This week Oracle released its quarterly Critical Patch Update to address 318 new vulnerabilities in their product suite. 9...
danielweis
Jan 23, 2025


Patch Tuesday has arrived again
Patch Tuesday is here again, addressing 161 vulnerabilities. with 11 critical and 3 being actively exploited. Also Super critical this...
danielweis
Jan 16, 2025


Palo Alto (CVE-2024-0012), as serious as it gets
I blogged about this one earlier in the week, but all organisations need to be aware that the latest Palo Alto vulnerability...
danielweis
Nov 23, 2024


The DemandScience breach
A lot of people would have received the notification from haveibeenpwned last night regarding the DemandScience data breach. To explain...
danielweis
Nov 14, 2024
FortiManager (CVE-2024-47575) - Patch now!
A new vulnerability affecting all versions of Fortinet’s FortiManager device has been disclosed and is being actively exploited in the...
danielweis
Oct 25, 2024


Microsoft Digital Defense Report 2024 Released
Microsoft have released their 2024 Digital Defense Report. A super interesting read on the threats, tactics and attacks they are seeing....
danielweis
Oct 21, 2024
New Iranian Joint-Advisory
A new joint advisory came out on saturday from the FBI, CISA, the NSA, CSE, AFP and the ACSC warning that Iranian state-sponsored threat...
danielweis
Oct 21, 2024
bottom of page