top of page


TLPT: Realistic Testing with an “Assumed-Breach Mindset”
Cybersecurity is no longer just about closing known vulnerabilities.Organizations must prepare for a realistic scenario: what if an attacker is already inside? This is where TLPT (Threat-Led Penetration Testing) comes in. With TLPT, an “assumed breach” approach is used. This means we do not only try to gain access, but above all test how far an attacker can get, and how well an organization detects and responds to the attack. Limina Hacking Company uses this approach to give
lynnestenvers
Jul 63 min read


Limina Hacking Company "Azure Security Services"
Microsoft Azure has evolved into a core platform for many organisations, supporting identity management, applications, data, workloads, integrations, and business continuity. As a result, Azure is no longer merely a technical cloud environment; it has become a strategic foundation for an organization’s digital resilience. We specialize in Azure security. We help organisations make their cloud environments not only compliant, but demonstrably resilient against realistic cyber
lynnestenvers
Jul 22 min read


Going beyond impacket-psexec: the AV bypass
Aurelien Chalot has recently written this awesome blog on this new tool he wrote; PsExecSvc.py (github link). There was only one part missing; an actual demonstration of where the tool works over impacket-psexec. As of releasing this blog, the tool is just 3 days old. The point of the tool is to offer the same (and more) functionality as the impacket-psexec tool, but it also bypasses the Windows Defender (and basically any other antivirus), by making use of Microsoft signed
eduwoldhuis
Mar 272 min read
bottom of page