Services
Windows Client Pentest
Audit of a Windows client from your IT landscape for common vulnerabilities and misconfigurations.
- Security settings in AV/EDR, firewall, proxy, system components, etc.
- Options for local privilege escalation
- Possibilities for code execution
- Password policy checks
- Hardening measures like disk encryption, Credential Guard, DMA Protection
- ...
How does it work? You send me the device along with a normal and admin account. Tests are performed and documented. The device is returned with a report.
Active Directory Pentest
Audit of the Active Directory for critical vulnerabilities and misconfigurations as well as low hanging fruits.
- Active Directory Certificate Services
- Group Policies
- Internal AD information
- MitM attacks
- GPPs and Logon Scripts
- Attackable services
- Lateral Movement and Privilege Escalation paths
- SQL Server configurations
- Password-related tests
- Kerberoasting and AS_REP Roasting
- SCCM
- ...
How does it work? Integration via drop box, systems virtualized, remote access via Tailscale VPN. Tests are performed, documented, and report provided.
Password Audit
Evaluating the quality of passwords used.
Checks password policies, legacy issues, and potential blacklist entries.
How does it work? We exchange the ntds.dit file from your AD. Hashed passwords are analyzed with wordlist and brute-force attacks. Results include percentages, distributions, and plaintext passwords.
General IT Security Consulting
Advice on IT security, training in Offensive Tooling, and guidance on countermeasures based on real attack experience.
I currently offer my services on a part-time freelance basis. Initial meetings define scope and requirements, and reports are provided in English with detailed findings and recommendations.