Compass Security Blog - Offensive Defense

In part 2 of our 4-part series on common Entra ID security findings, we show how seemingly harmless group configurations can be abused to bypass…

Read more

This post is part of a small blog series covering common Entra ID security findings observed during real-world assessments. Each article explores…

Read more

We just released a big update for EntraFalcon. The new Security Findings Report adds an interactive HTML overview to EntraFalcon that consolidates…

Read more

While not new, a self-referencing LNK file in combination with winget configuration instructions can be a viable initial access payload for…

Read more

Last year we wrote about a Windows 11 vulnerability that allowed a regular user to gain administrative privileges. Not long after, Manuel Kiesel from…

Read more