Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Look at this fantastic piece of advice from Microsoft!

Look at this fantastic piece of advice from Microsoft!

Scheduled Pinned Locked Moved Uncategorized
38 Posts 36 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • ? Guest

    @kr3st3n@infosec.exchange @theodric@social.linux.pizza @phloggen@expressional.social this is an actual technique that works against many commercial AV and EDR solutions

    ? Offline
    ? Offline
    Guest
    wrote last edited by
    #25

    @kr3st3n@infosec.exchange @theodric@social.linux.pizza @phloggen@expressional.social a related one is to generate a bunch of very large benign archives to flood the scan queue before it picks up your payload, giving it time to execute before the system flags it.

    1 Reply Last reply
    0
    • theodric@social.linux.pizzaT theodric@social.linux.pizza

      Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

      rmikke@en.osm.townR This user is from outside of this forum
      rmikke@en.osm.townR This user is from outside of this forum
      rmikke@en.osm.town
      wrote last edited by
      #26

      @theodric

      Link Preview Image
      1 Reply Last reply
      0
      • hugh@mastodon.nzH hugh@mastodon.nz

        @theodric
        Does it suggest "password" or "ABC123"?

        ricci@discuss.systemsR This user is from outside of this forum
        ricci@discuss.systemsR This user is from outside of this forum
        ricci@discuss.systems
        wrote last edited by
        #27

        @hugh @theodric It's worse, if you were to follow the advice above it in the article, you would either include the password in the text of the email or use the filename as the password

        1 Reply Last reply
        0
        • theodric@social.linux.pizzaT theodric@social.linux.pizza

          Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

          icewolf@masto.brightfur.netI This user is from outside of this forum
          icewolf@masto.brightfur.netI This user is from outside of this forum
          icewolf@masto.brightfur.net
          wrote last edited by
          #28

          @theodric what the..what??

          thetenuousorder@meow.socialT 1 Reply Last reply
          0
          • icewolf@masto.brightfur.netI icewolf@masto.brightfur.net

            @theodric what the..what??

            thetenuousorder@meow.socialT This user is from outside of this forum
            thetenuousorder@meow.socialT This user is from outside of this forum
            thetenuousorder@meow.social
            wrote last edited by
            #29

            @IceWolf @theodric make sure to be as unsafe as possible so windows doesn't need to put in any work on... services that worked just fine before?

            1 Reply Last reply
            0
            • theodric@social.linux.pizzaT theodric@social.linux.pizza

              Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

              mahryekuh@hachyderm.ioM This user is from outside of this forum
              mahryekuh@hachyderm.ioM This user is from outside of this forum
              mahryekuh@hachyderm.io
              wrote last edited by
              #30

              @theodric In an unrelated statement, a Microsoft employee also recommended the use of generic locks that are easy to pick, lest you’ll never be locked out of your house again.

              1 Reply Last reply
              0
              • theodric@social.linux.pizzaT theodric@social.linux.pizza

                Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                sauc3@hachyderm.ioS This user is from outside of this forum
                sauc3@hachyderm.ioS This user is from outside of this forum
                sauc3@hachyderm.io
                wrote last edited by
                #31

                @theodric

                Classic Microslop

                1 Reply Last reply
                0
                • theodric@social.linux.pizzaT theodric@social.linux.pizza

                  Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                  epic_null@infosec.exchangeE This user is from outside of this forum
                  epic_null@infosec.exchangeE This user is from outside of this forum
                  epic_null@infosec.exchange
                  wrote last edited by
                  #32

                  @theodric I am concerned that Defender is trying to decrypt files at all...

                  1 Reply Last reply
                  0
                  • theodric@social.linux.pizzaT theodric@social.linux.pizza

                    Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                    swelljoe@mas.toS This user is from outside of this forum
                    swelljoe@mas.toS This user is from outside of this forum
                    swelljoe@mas.to
                    wrote last edited by
                    #33

                    @theodric relatedly, if everybody uses the same password the odds of someone guessing a password goes way down, right? Like, if there are 50 people in an organization and they each have their own password, an attacker is 50 times more likely to guess a password. That's just basic math.

                    womble@infosec.exchangeW 1 Reply Last reply
                    0
                    • theodric@social.linux.pizzaT theodric@social.linux.pizza

                      Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                      aura@gts.foxsnuggl.esA This user is from outside of this forum
                      aura@gts.foxsnuggl.esA This user is from outside of this forum
                      aura@gts.foxsnuggl.es
                      wrote last edited by
                      #34

                      @theodric ah, passwords as social convention

                      1 Reply Last reply
                      0
                      • swelljoe@mas.toS swelljoe@mas.to

                        @theodric relatedly, if everybody uses the same password the odds of someone guessing a password goes way down, right? Like, if there are 50 people in an organization and they each have their own password, an attacker is 50 times more likely to guess a password. That's just basic math.

                        womble@infosec.exchangeW This user is from outside of this forum
                        womble@infosec.exchangeW This user is from outside of this forum
                        womble@infosec.exchange
                        wrote last edited by
                        #35

                        @swelljoe your logic is impeccable.

                        1 Reply Last reply
                        0
                        • theodric@social.linux.pizzaT theodric@social.linux.pizza

                          Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                          xenia0040@transfem.socialX This user is from outside of this forum
                          xenia0040@transfem.socialX This user is from outside of this forum
                          xenia0040@transfem.social
                          wrote last edited by
                          #36

                          @theodric@social.linux.pizza google is evil but they're good at what they do. Microsoft is just evil

                          1 Reply Last reply
                          0
                          • theodric@social.linux.pizzaT theodric@social.linux.pizza

                            Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                            su_liam@mas.toS This user is from outside of this forum
                            su_liam@mas.toS This user is from outside of this forum
                            su_liam@mas.to
                            wrote last edited by
                            #37

                            @theodric I’m sure this response was perfectly appropriate…

                            Link Preview Image
                            1 Reply Last reply
                            0
                            • theodric@social.linux.pizzaT theodric@social.linux.pizza

                              Look at this fantastic piece of advice from Microsoft! https://learn.microsoft.com/en-au/answers/questions/2007466/are-costs-incurred-when-attempting-to-scan-passwor

                              badrihippo@fosstodon.orgB This user is from outside of this forum
                              badrihippo@fosstodon.orgB This user is from outside of this forum
                              badrihippo@fosstodon.org
                              wrote last edited by
                              #38

                              @theodric you made me open up a Microsoft website 🤯

                              1 Reply Last reply
                              0
                              • R relay@relay.mycrowd.ca shared this topic
                              Reply
                              • Reply as topic
                              Log in to reply
                              • Oldest to Newest
                              • Newest to Oldest
                              • Most Votes


                              • Login

                              • Login or register to search.
                              • First post
                                Last post
                              0
                              • Categories
                              • Recent
                              • Tags
                              • Popular
                              • World
                              • Users
                              • Groups