@JustinKohler10 Profile picture

Justin Kohler

@JustinKohler10

VP Products @Specterops. Father of 4. Biking is life. He/him.

Similar User
Jonas Bülow Knudsen photo

@Jonas_B_K

werdhaihai photo

@werdhaihai

Jonny Johnson photo

@jsecurity101

Steven photo

@0xthirteen

Daniel Heinsen photo

@hotnops

Nick Powers photo

@zyn3rgy

Emily Leidy photo

@leidy_tector

Duane Michael photo

@subat0mik

Andrew Chiles photo

@AndrewChiles

Stephen Hinck (he/him) photo

@StephenHinck

Jared Atkinson photo

@jaredcatkinson

Joshua Prager photo

@Praga_Prag

ςεяβεяμs - мαℓωαяε яεsεαяςнεя photo

@c3rb3ru5d3d53c

Luke Paine photo

@v3r5ace

mpgn photo

@mpgn_x64

Justin Kohler Reposted

Looking forward to this! Hope you will join :)

🗣️ The Tier Zero conversation continues! Join @Jonas_B_K, @martinsohndk & @tifkin_ for the next installment in our Defining the Undefined series as they discuss the intricate world of Microsoft Exchange Server and AD CS. Register today ➡️ ghst.ly/4eSssxL

Tweet Image 1


Justin Kohler Reposted

Stay ahead of Active Directory targeting. We teamed with @ASDGovAu and others to provide recommended strategies to prevent and detect malicious actors attempting to access the keys to your network. Read our joint guidance: nsa.gov/Press-Room/Pre…

Tweet Image 1

Justin Kohler Reposted

🎙️ A new episode of @dcpthepodcast has dropped! Hear from @jaredcatkinson & @JustinKohler10 on the Hybrid Attack Paths feature update in BloodHound Enterprise and CE. ⤵️

We recorded a special BlackHat episode with @jaredcatkinson and @JustinKohler10 from @SpecterOps talking about #HybridAttackPaths in BloodHound (both CE and Enterprise). Catch it here: podcasters.spotify.com/pod/show/dcppo…



Justin Kohler Reposted

Just ONE WEEK left in our #BHUSA 2024 T-shirt Fundraiser! Don't miss out on this year's sweet design. All funds raised benefit @AmericanCancer Order your t-shirt today! 👉 ghst.ly/bh-tshirt-24

Tweet Image 1

Justin Kohler Reposted

It's #BloodHoundBasics day! Find hybrid Attack Paths in BloodHound with our pre-built cross-platform Attack Path queries. Use this query to find where you should use cloud-only accounts for privileged roles in Azure.

Tweet Image 1

Justin Kohler Reposted

From initial access to Domain Admin... with a detour through Entra. Another real example from a real environment. We will demonstrate the discovery, execution, and remediation of this specific attack path in this webinar on August 22: specterops.zoom.us/webinar/regist…

Tweet Image 1

Justin Kohler Reposted

Your t-shirt collection is about to get bigger! Check out our #BHUSA 2024 T-shirt Fundraiser happening now. All funds raised from this year's design benefit @AmericanCancer Learn more at ghst.ly/bh-tshirt-24

Tweet Image 1

Get it while it lasts!


What's better than seeing Attack Paths from Active Directory to Azure and back down? Seeing them in dark mode. Check out the new release!

Tweet Image 1

Hybrid Attack Paths across AD & Azure now in BloodHound! 🙌 Along with this update, BloodHound v5.13.0 also includes view improvements & the long awaited Dark Mode! Check out our latest blog post from @JustinKohler10 to learn more about these features. ⬇️ ghst.ly/4ftbqY4



Jared and Jonas's work here should be reviewed for anyone responding to the ESX Admins vulnerability. Start mapping these Attack Paths today.

Yesterday, I wrote a thread describing the ESXi vulnerability and how you can use BloodHound's Attack Path Management approach to quantify the impact of such a group. However, it's useful to understand our exposure to the vulnerability as well. x.com/jaredcatkinson…



This is a fantastic use of an attack / access graph to boil down complex scenarios into the “so what”

There's been lots of reporting on the campaign against Snowflake DB, so I thought it'd be useful to look at it from an Attack Path PoV. This post shows how you can create an graph for your SNOW deployment & what that tells us about the campaign. posts.specterops.io/mapping-snowfl…



Justin Kohler Reposted

I've released another post in my On Detection series. This edition builds on the previous post where I introduced "execution modalities." Here we look at how modalities, like behavior, can impact detection efficacy and how we can deal with that fact. posts.specterops.io/part-13-415c4d…


Justin Kohler Reposted

I'm excited to get my latest blog post about purple team efficacy out into the wild! You may feel like the point I'm making is obvious, but I'd argue that a lot of concepts seem obvious only when you're faced with an argument on it's behalf. posts.specterops.io/to-infinity-an…


3 lightning sessions on fun and interesting topics followed by food and drinks, come join us if you're in Seattle!

📆 Mark your calendar! We are hosting a BloodHound user group meet-up in the Seattle area on Weds., May 29. Join @_wald0, @JustinKohler10, @harmj0y & @tifkin_ at @AscendBellevue to get the latest on managing Attack Paths, AD CS & Nemesis. Register 👉 ghst.ly/3UUP5KE

Tweet Image 1


Last talks today at #SOCON2024 are mine and @SadProcessor's #BloodHound operator. If you're struggling to decide, consider this: Mine is closer to happy hour 🍺 🍔.


Joining us at #SOCON2024 today? When your brain is sufficiently fried, join me today at 4pm for a fun look at the past 3 years of Attack Paths. We'll cover: 🚨 War stories 📚 Lessons Learned 🤖 Where we go from here

Tweet Image 1

Loading...

Something went wrong.


Something went wrong.