@lakunishok Profile picture

Benny Lakunishok

@lakunishok

Joined April 2013
Similar User
Zero Networks photo

@ZeroNetworks

Zero Labs photo

@ZeroNLabs

obscuresec.bsky.social photo

@obscuresec

Dekel Paz photo

@dekel_paz

Michael Dubinsky photo

@MichaelDubinsky

Nicholas DiCola photo

@MasterSecJedi

Yehuda Smirnov photo

@yudasm_

Natee Pretikul photo

@NateePretikul

Andrew photo

@ciberesponce

Benny Lakunishok Reposted

Everything is ready to go for @DEATHCon2024! Join @dekel_paz and @SagieDulce for their workshop: 𝙋𝙧𝙚𝙫𝙚𝙣𝙩𝙞𝙤𝙣 𝙀𝙣𝙜𝙞𝙣𝙚𝙚𝙧𝙞𝙣𝙜 via #LDAPFirewall and #RPCFirewall. See how to start stopping - instead of just responding (too late) to attacks. deathcon.io


Benny Lakunishok Reposted

Another #RPC vulnerability dropped along with a #PoC code. This #EoP enables attackers to perform #NTLMRelay (against #ADCS or other servers). #RPCFirewall makes you secure by default! as there is no reason for MS-RRP interface to be open remotely. msrc.microsoft.com/update-guide/e…


Benny Lakunishok Reposted

Today at 12:30 at @BlackHatEvents, @dekel_paz & @sagiedulce will be presenting the #LDAPFirewall, showing how you can actually audit LDAP efficiently in production, and also block a ton of LDAP attacks! blackhat.com/us-24/arsenal/… #BlackHatUSA2024

Even though #LDAP is 31 years old, it's still relevant. Case in point, an awesome talk by @danielhbohannon and @sabi_elezi, showcasing how to break your #LDAP search detection with advanced obfuscation techniques. Also #MaLDAPtive tool drop! github.com/MaLDAPtive/Inv…

Tweet Image 1


Benny Lakunishok Reposted

@MGrafnetter directed my attention to a new RPC filter capability! Good job by @MSFTResearch / @Microsoft for this. I Hope that #RPCFirewall contributed in showcasing the need for a more granular RPC WFP support learn.microsoft.com/en-us/windows/…

Tweet Image 1

Benny Lakunishok Reposted

Excited to be part of #Infosec2024! Join us from June 4-6 in #London for insights on how to get to #cybersecurity promised land🌈. 📅Schedule 1:1 time with our experts: hubs.ly/Q02y0LKP0 🎫Haven’t registered? Sign up here: hubs.ly/Q02y0Hj00


Benny Lakunishok Reposted

Wrote a PowerShell script that dumps RPC activities from Windows events to CSV. It does it for both the #RPCFirewall events and also Windows Security events. Makes analyzing RPC activities easier when you don't have a #SIEM :) github.com/zeronetworks/r…


Benny Lakunishok Reposted

This post caught my eye the other day. Based on Tal’s reputation I figured that was pretty high praise. Got on a call with @ZeroNetworks today and was really impressed. If you think segmentation would be great but it’s impossible to implement in the real world I highly recommend…

You should really check out @ZeroNetworks



Benny Lakunishok Reposted

Written a new blog post on reverse-engineering the LDAP service on Windows, and how the LDAP Firewall works Check it out here: zeronetworks.com/blog/a-technic…

Tweet Image 1

Benny Lakunishok Reposted

New version of LDAPFW is out! Now supporting audit rules for more granular control over what events are logged. Check it out here: github.com/zeronetworks/l…

Tweet Image 1

Benny Lakunishok Reposted

Our industry tends to hyperfocus on a single aspect of security - but you can't see the whole picture without combining user permissions, network access, and software vulnerabilities. That's why we developed our open-source tool #BlueHound Get started: github.com/zeronetworks/b…


Benny Lakunishok Reposted

@MSFTResearch should definitely up their RPC game, and fix their RPC Filter bugs. Just like they would any other #zeroday . Meanwhile, your Domain Controllers RPC interfaces are completely exposed, unless you use our #OSS #RPCFirewall github.com/zeronetworks/r…

Imagine configuring @Windows Firewall to block an IP range, but it still allows traffic or causes service crashes. Can you believe @msftsecurity isn't quick to resolve this issue? Yet, that's exactly what's happening with RPC Filters! Which mostly put your DCs at risk! 💀💀💀



Benny Lakunishok Reposted

Just came across this post in Indonesian about thwarting multiple attacks using #RPCFirewall. It covers #SharpHound, #PetitPotam, and other forms of #LateralMovement. Check it out! 👇 ow.ly/fyLc50OV5sg


Benny Lakunishok Reposted

Most businesses by now recognize that exposing RDP to the internet is asking to get pwned. @Sophos highlights the importance of not overlooking RDP for lateral movement inside. news.sophos.com/en-us/2023/08/…

Tweet Image 1

Benny Lakunishok Reposted

Just block it with @ZeroNetworks Segment and move on with your day ;) #microsegmentation #networksecurity

Microsoft has observed a new version of the BlackCat ransomware being used in recent campaigns. This version includes the open-source communication framework tool Impacket, which threat actors use to facilitate lateral movement in target environments.



Benny Lakunishok Reposted

Zero Networks partners with @HighPoint to offer zero trust network security via #microsegmentation & #ztna. For over 25 years, HighPoint has helped its customers maximize their IT investments and safeguard their digital assets. 💪📷 ow.ly/5Ai850PAmZz

Tweet Image 1

Benny Lakunishok Reposted

🎉Zero Networks was named to the prestigious MES Midmarket 100 list!🏆 We're committed to providing top-notch network security solutions for the midmarket. Grateful to @TheChannelCo, MES & @CRN for the honor! #NetworkSecurity #MESMidmarket100 #Innovation ow.ly/x69050Ps24I

Tweet Image 1

Benny Lakunishok Reposted

Penetration tests (or #pentests) are notoriously hard to pass. Get proactive with us! 💪 Zero Networks leverages automated, agentless #microsegmentation and #MFA to enable you to pass a pen test with flying colors! 🏆 Learn more: ow.ly/J3Lp50PhnOx

Tweet Image 1

Benny Lakunishok Reposted

🤝 Customer relationships are everything to us! Today, our VP, Customer Success (@MasterSecJedi), visited @ACIBuilds to discuss their experience with our network security solutions - Segment and Connect. 🔐 We believe in learning from each other to combat cyber threats! 👥💪

Tweet Image 1
Tweet Image 2
Tweet Image 3

Benny Lakunishok Reposted

🚨@TheHackersNews #Alert: 330K FortiGate Firewalls Still Unpatched to CVE-2023-27997 RCE Flaw (ow.ly/EMNX50P7rKO). Consider: is your #VPN/#ZTNA actually making you *less* secure? Zero Networks Connect™️ operates w/ *no open ports* for max #security: ow.ly/bnM750P7sol


Benny Lakunishok Reposted

The #EDR fails you when you need it. But works great when you don't #microsegmentation and #identiysegmentqtion is what works :)

Interesting thoughts from @christruncer on what works for defending networks. Some old school favourites in there like network segmentation

Tweet Image 1


Loading...

Something went wrong.


Something went wrong.