A new scam is targeting ๐—š๐—ผ๐—ผ๐—ด๐—น๐—ฒ ๐—”๐—ฑ๐˜€ ๐— ๐—ฎ๐—ป๐—ฎ๐—ด๐—ฒ๐—ฟ (๐— ๐—–๐—–) accounts.

No malware.
No hacking tools.
No vulnerabilities.

Just a convincing email pretending to be Google Ads support.

The moment someone logs in โ€” ๐˜๐—ต๐—ฒ ๐—ฎ๐˜๐˜๐—ฎ๐—ฐ๐—ธ๐—ฒ๐—ฟ ๐—ผ๐˜„๐—ป๐˜€ ๐˜†๐—ผ๐˜‚๐—ฟ ๐—ฎ๐—ฑ ๐—ฎ๐—ฐ๐—ฐ๐—ผ๐˜‚๐—ป๐˜๐˜€.

๐—ฅ๐—ฒ๐—ฎ๐—ฑ ๐—บ๐—ผ๐—ฟ๐—ฒ: https://threatcop.com/blog/google-ads-scams-mcc-phishing/

#AdSecurity #PhishingScam #CyberThreats #HumanError #GoogleAdsScams #CyberAwareness #InformationSecurity #PeopleSecurityManagement #CyberAttack

๐Ÿ’ก Who should control your Google Ads account?
Not everyone needs Admin access.
Learn how to assign the right roles, protect your ad spend, and keep collaboration smooth ๐Ÿ‘‰
https://agrowth.io/blogs/google-ads/google-ads-account-access-levels
#GoogleAds #DigitalMarketing #PPCStrategy #AdSecurity #MarketingOps
Mastering Google Ads Account Access Levels: A Strategic Guide for Adva

Unlock the full potential of your campaigns with a deep dive into Google Ads account access levels. Learn how to assign roles, manage permissions, and streamline collaboration for advanced advertising success.

AGrowth.io
See you at #BTC2025 ! Iโ€™ll be presenting a portion of my BS/MS Thesis, โ€œSecuring Sidewaysโ€ https://blueteamcon.com/directory/securing-sideways-thwarting-lateral-movement-with-no-extra-software/ @BlueTeamCon #infosec #conferences #adsecurity
Securing Sideways: Thwarting Lateral Movement, with no extra software! - Blue Team Con

Learn more about our BTC 2025 talk: Securing Sideways: Thwarting Lateral Movement, with no extra software!

Blue Team Con

A critical vulnerability called BadSuccessor in Windows Server 2025 lets attackers with minimal permissions escalate privileges and take over any Active Directory user. It exploits flaws in delegated Managed Service Accounts (dMSAs) and affects systems even if dMSAs arenโ€™t actively used.

#CyberSecurity #InfoSec #Microsoft #PrivilegeEscalation #ZeroDay #PatchManagement #ADSecurity #WindowsSecurity #TECHi

Read Full Article Here :- https://www.techi.com/windows-server-2025-flaw-puts-active-directory-at-ris/

What is Active Directory

Learn everything you need to know about securing Active Directory. Discover threats to AD security, security assessments, and best practices

Cyber Security and Programming

Boost your #ThreatHunting game!
#FindUnusualSessions by @podalirius spots suspicious Kerberos sessions in Active Directory.
A must-have for any #BlueTeam!

GitHub: https://github.com/p0dalirius/FindUnusualSessions

#CyberSecurity #DFIR #ADSecurity #BlueTeamTools

GitHub - p0dalirius/FindUnusualSessions: A tool to remotely detect unusual sessions opened on windows machines using RPC

A tool to remotely detect unusual sessions opened on windows machines using RPC - p0dalirius/FindUnusualSessions

GitHub
HUMAN and Opera Ads join forces to combat CTV Ad Fraud: HUMAN Security integrates pre-bid detection into Opera Ads, enhancing CTV advertising security and integrity at scale. https://ppc.land/human-and-opera-ads-join-forces-to-combat-ctv-ad-fraud/?utm_source=dlvr.it&utm_medium=mastodon #CTVAdFraud #AdSecurity #DigitalAdvertising #HumanSecurity #OperaAds
HUMAN and Opera Ads join forces to combat CTV Ad Fraud

HUMAN Security integrates pre-bid detection into Opera Ads, enhancing CTV advertising security and integrity at scale.

PPC Land
Microsoft's guidance to help mitigate Kerberoasting   | Microsoft Security Blog

Kerberoasting, a well-known Active Directory (AD) attack vector, enables threat actors to steal credentials and navigate through devices and networks. Microsoft is sharing recommended actions administrators can take now to help prevent successful Kerberoasting cyberattacks.

Microsoft Security Blog
How can I Control Spam Ads on a Classifieds Site? - Blog

Letโ€™s imagine, You're searching for a new apartment to rent, and suddenly, you're seeing ads for cheap online bets or weight loss pills. Not exactly what you

Blog

A blog post exploring techniques adversaries use to gain and sustain access within a domain. Additionally, it will also discuss effective recovery strategies:
- Domain of Thrones: Part I: https://medium.com/specter-ops-posts/domain-of-thrones-part-i-c183ee4bf379
- Domain of Thrones: Part II: https://posts.specterops.io/domain-of-thrones-part-ii-45080d5dbfc8

#activedirectory #ADSecurity #kerberos #credentialdumping