Reminder: Die gültigen #Zertifikat-Laufzeiten schrumpfen.

🟡 15. März 2026: 200 Tage ☹️
🟠 15. März 2027: 100 Tage 🤢
🔴 15. März 2029: 47 Tage 🤮

Unser Status:
#LetsEncrypt (wo einfach möglich) aktiviert
✅ 30-Tage-Zertifikate der internen AD CS PKI für Intranetdienste auf #WindowsServer und #Linux mit #PowerShell vollautomatisiert
⏳ AD FS, Exchange

https://www.heise.de/news/47-Tage-CAs-und-Browserhersteller-beschliessen-kuerzere-Laufzeit-fuer-Zertifikate-10352867.html

#sysadmin #admin #itsicherheit #zertifikate #tls #ssl #reminder #adcs #adfs #pki #intranet #internet

Beschlossen: Lebensdauer für TLS-Serverzertifikate sinkt auf 47 Tage

Von derzeit maximal dreizehn Monaten sinkt die Gültigkeit auf anderthalb. Allerdings mit jahrelanger Übergangsfrist für Admins.

heise online

Is today a #FediHire Friday? Sure looks like it!

What I'm looking for: A senior level, individual contributor role supporting Windows, Active Directory, Certificates, PKI, Azure, and information security in a large enterprise. I like to solve weird problems and make computers run smoothly. I want to help others use technology effectively. Interested in relocating outside of the US.

My main focus the last few years has been rebuilding and modernizing a struggling certificate environment. That includes growing the team to meet our company needs, migrating our AD-integrated private PKI stack to a certificates-as-a-service vendor, getting a handle on our web PKI consumption, and making massive improvements to our certificate life-cycle management platform. I supported and advised our CyberSec and Desktop teams as we rolled out multi-factor authentication to 50,000 employees and contractors across the US. My understanding of deep computer fundamentals, talent for quickly grasping nuances of larger systems, and calmness in a crisis have contributed to quickly resolving major technology outages regardless of root cause.

This role hasn't been exclusively technical. A big part of my current job is building relationships with our developers to help them understand how certificates work, the responsible ways to use them, and what our relevant internal policies are. I've developed training and teaching material for junior and mid-level engineers featuring practical PKI concepts and our specific enterprise requirements. I've worked closely with fellow principal engineers and architects to design secure, resilient services. I've gotten to spend some time with upper management to both explain the immediate challenges we've had and the plans we can implement improve our infrastructure, reducing costs and outages.

While this position has been focused on certs and how to use them, I'm very comfortable considering a technical leadership role for Windows (server and desktop) administration and Active Directory. I also have some good experience with Azure and virtualization platforms, but they haven't been my daily focus for several years.

My current employer is direct retail for general public consumers. I've also worked in banking/finance, manufacturing, and architecture/civil engineering firms. The common thread is I love to help people leverage technology for their goals, to help them be more effective.

In my personnel/volunteer time I've done very similar: working backstage with lights/sounds/projections so live performers can shine, and volunteering at local repair clinic events to help my neighbors with technology that isn't meeting their expectations.

Right now I'm in Syracuse, New York (about five hours from NYC), but I'm open to relocation/migration anywhere in the world.

PMs open if you want to talk details. Boosts/retoots appreciated.

#Job #GetFediHired #FediHired #ITJobs #Windows #ActiveDirectory #Certificate #MSCA #MicrosoftCertificateAuthority #ADCS #PKI #WebPKI #Azure #Migration #CyberSecurity #InfoSecurity #RemoteWork

The future of oncology is shifting. Our latest article explores the explosive rise of ADC cancer treatment in China—the "magic bullets" that Merck and AstraZeneca are spending billions to acquire.

MedBridgeNZ facilitates Medical Tourism China by connecting you directly with the top-tier hospitals pioneering these treatments.

Read more: https://zurl.co/G0Svk

#ADCs #Oncology #CancerTreatment #China #MedicalConcierge #MedicalTourismChina

ADC Cancer Treatment in China: Next-Gen Targeted Therapies | MedBridgeNZ

Why the world’s biggest pharmaceutical companies are looking to China for the future of cancer treatment—and why patients shouldn’t wait.Key Takeaways • A New Era of Precision: Antibody-Drug Conjugates (ADCs) are "biological missiles" offering potent, targeted attacks on cancer cells with potentially fewer side effects than traditional chemotherapy. • China Leads Innovation: Global pharma giants like Merck and AstraZeneca are heavily investing in Chinese biotech, proving that ADC cancer treatmen

Medbridge Nz
AD CS : comment renouveler les certificats d’une autorité racine et intermédiaire ? https://www.it-connect.fr/ad-cs-comment-renouveler-les-certificats-dune-autorite-racine-et-intermediaire/ #WindowsServer #ADCS
AD CS : renouveler les certificats racine et intermédiaire

Ce tutoriel explique comment renouveler le certificat d'une autorité de certification AD CS racine et intermédiaire, qu'elle soit en ligne ou hors ligne.

IT-Connect
AD CS : comment auditer et analyser votre PKI ?

Ce tutoriel explique comment auditer et analyser une autorité de certification (PKI) AD CS à l'aide de l'outil PSPKIAudit, afin d'identifier les failles (ESC).

IT-Connect

SCEP Request Tool for AD CS and Intune

A command-line SCEP client enabling certificate requests from AD CS/NDES and Intune during pentesting.

https://github.com/dirkjanm/scepreq

#ADCS

GitHub - dirkjanm/scepreq: SCEP request tool for AD CS and Intune

SCEP request tool for AD CS and Intune. Contribute to dirkjanm/scepreq development by creating an account on GitHub.

GitHub
Detecting ADCS Privilege Escalation - Black Hills Information Security, Inc.

Active Directory Certificate Services (ADCS) is used to manage certificates for systems, users, applications, and more in an enterprise environment. Misconfigurations in ADCS can introduce critical vulnerabilities into an enterprise Active Directory environment.

Black Hills Information Security, Inc.
📢 Guide de détection des attaques d'escalade de privilèges ADCS
📝 Cet article publié par Black Hills InfoSec fournit un guide complet pour les équipes de sécurité opérationnelle sur la détection des attaques d'escalade de privilèges...
📖 cyberveille : https://cyberveille.ch/posts/2025-07-23-guide-de-detection-des-attaques-d-escalade-de-privileges-adcs/
🌐 source : https://www.blackhillsinfosec.com/detecting-adcs-privilege-escalation/
#ADCS #Escalade_de_privilèges #Cyberveille
Guide de détection des attaques d'escalade de privilèges ADCS

Cet article publié par Black Hills InfoSec fournit un guide complet pour les équipes de sécurité opérationnelle sur la détection des attaques d’escalade de privilèges ADCS. L’article met en avant l’importance de la configuration adéquate des journaux et de la création d’alertes pour détecter les attaques d’escalade de privilèges via ADCS (Active Directory Certificate Services). Il explique comment activer l’audit ADCS, créer des requêtes de détection dans Microsoft Sentinel en utilisant KQL, et configurer des alertes automatisées pour les techniques d’exploitation ESC1 et autres.

CyberVeille

ESCплуатация: новый вектор атаки на Active Directory Certificate Services

Привет, Хабр! По горячим следам нашей большой статьи про векторы атак ESC1-ESC15 мы — команда PT Cyber Analytics — решили подробно разобрать относительно новый вектор атаки ESC16. Возможность обнаружения и эксплуатации этого вектора была добавлена в майском обновлении ПО Certipy.

https://habr.com/ru/companies/pt/articles/928484/

#activedirectory #cybersecurity #пентест #certificate_authority #certificates #adcs #redteam #certipy

ESCплуатация: новый вектор атаки на Active Directory Certificate Services

Привет, Хабр! По горячим следам нашей большой статьи про векторы атак ESC1-ESC15 мы — команда PT Cyber Analytics — решили подробно разобрать относительно новый вектор атаки ESC16. Возможность...

Хабр
The EU just bet €12.5M on biotech firm Oncomatryx to lead in antibody-drug conjugates (ADCs) — a new frontier in cancer therapy. A bold move in Europe's push to shape the future of precision oncology.
🔗 https://biotech.industryexaminer.com/eu-backs-oncomatryx-adc-precision-oncology/
#Biotech #Oncology #ADCs
EU’s €12.5M Bet on Oncomatryx and Antibody-Drug Conjugates (ADCs) – Biotech Industry Examiner