
Luke Jennings
@jukelennings
VP, R&D at @pushsecurity
ID: 838853726341300226
06-03-2017 20:48:08
420 Tweet
1,1K Followers
420 Following


Some of my research on SaaS attacks, including ghost logins and other persistence vectors, made it on to Darknet Diaries Achievement unlocked.

I am filled with pride & joy having heard Evilginx compared to Cobalt Strike, on the latest episode of Risky Business. Huge thank you to Luke Jennings from @pushsecurity for making this bold statement (and for pronouncing Evilginx properly! 😜) Sorry, I could not help myself 😆

This week was my first time attending MSSN CTRL. It’s been a great conference and wow what a memorable view from the venue! Thanks for inviting me LimaCharlie!






Wrote about a novel technique that leverages the well-known Device Code #phishing approach. It dynamically initiates the flow as soon as the victim opens the phishing link and instantly redirects them to the authentication page. Capable to bypass #fido denniskniep.github.io/posts/09-devic…