Trimarc
@TrimarcSecurity
We are the experts in Active Directory, Entra ID, and Identity security. Find out more about our services at http://bit.ly/Trimarc.
#30DaysOfVision - Day 23 - Environment Risk Score (ERS) Whether it’s last-minute shopping, wrapping, or moving that dang Elf to a new place on the shelf, sometimes you just don't have the time for a deep dive to assess issues in your #ActiveDirectory environment. You need to…
Excited to announce that @TrimarcSecurity and @TrustedSec are joining forces. Happy to welcome over the amazing #Trimarc folks led by @PyroTek3 over to the #TrustedSec team and further expand our capabilities at TS. prweb.com/releases/trima…
❌ Admins, please block Device Code Flows (DCF) in your tenant today!! In the post below I share how device code phishing works, the CA policy to create and finally show how it get's blocked with the policy. 🧵👇
The ability to block Device Code Flow just became available in Microsoft Entra ID Conditional Access. Here's a quick walkthrough of how attackers use device code flow to get access to your tenant and what you can do to protect yourself.
Behind every major hack is: A complex technical explanation A human story And usually a really dumb mistake I tell all three.
Join us in 30 minutes for a REstream of our previous Happy Hour episode: 11 am PT / 2 pm ET 💥 Hacking Demystified, featuring @HackingDave It's a replay of our previous livestream, but we'll be commenting LIVE on Twitch, so join the conversation at spotify.trimarcsecurity.com/4h0Zlt8
Grab the fresh release of Locksmith to help secure your Active Directory Certificate Services in 2025! This free tool now includes risk ratings and other improvements. Install-Module Locksmith -Scope CurrentUser github.com/TrimarcJake/Lo… #ActiveDirectory #ADCS #PKI #PowerShell
Through dragon’s fire, a spark ignites, A Vision burns through endless nights. To guard AD realms, to keep them clear, A more secure enterprise for this New Year. Thank you for joining us during this #30DaysOfVision adventure! Happy New Year from the Trimarc crew 🐉

Trimarc Vision is a powerful security posture analysis product that provides visibility into the most important security components of Active Directory. With dozens to hundreds of thousands of AD users often spread across multiple domains and forests, maintaining a strong…
Often, some of the most enlightening parts of a webcast or livestream are the questions that audience members ask at the end of a presentation. The questions our viewers asked at the end of our Trimarc Vision webcast were so good that we decided to break them out into a separate…
#30DaysOfVision - Day 27 – Agents of Chaos. Any analyst or security engineer who has been around long enough has an intimate relationship with agent fatigue. It’s not enough to have to worry about the processing needs of an agent for every product, but also the greedy permission…
This is Jim Sykora (@JimSycurity), Trimarc Security Consultant and author of an awesomesauce white paper, "Owner or Pwned.” Jim smashes a year’s worth of research into 54 pages, complete with code snips, screenshots, and of course, Kenny Loggins references. Read the white paper…
#30DaysOfVision - Day 25 - Criticality. Let's dig a little more into Trimarc Vision's Findings. Obvious question: how does Trimarc define levels of criticality? We define them in Vision as we always have for our assessments like our Active Directory Security Assessment. The bar…
💬 "Oh, there has to be something in the stocking that makes a noise. Otherwise, what is 4:30 AM for?" ~Death [in Hogfather, by Terry Pratchett] We hope your holidays are warm, magical, and chock-full of your preferred level of festive noise. #30DaysOfVision
![TrimarcSecurity's tweet image. 💬 "Oh, there has to be something in the stocking that makes a noise. Otherwise, what is 4:30 AM for?" ~Death [in Hogfather, by Terry Pratchett]
We hope your holidays are warm, magical, and chock-full of your preferred level of festive noise.
#30DaysOfVision](https://pbs.twimg.com/media/GfrWSJbXYAAu3zu.jpg)
It's Day 22 of 30 Days of Vision... prepare to be wowed by the AD insights and skillful sleight of hand of @TrimarcSecurity Senior Security Consultant, Brandon Colley (@TechBrandon). You may have seen his talk on "Winning the Game of Active Directory" during DEF CON 32, but did…

#30DaysOfVision - Day 21 - Collectibles. We are an industry of proud nerds. Star Trek, Star Wars, Battlestar Galactica… collecting things IS our thing. 🤓 Trimarc Vision was built by those same nerds, so we gave you Collections of Forests. A little harder to fit on a shelf,…
#30DaysOfVision - Day 20 - Mergers & Acquisitions + Comparing Forests. Wondering how one of your existing forests measures up to another? Have questions about a potential new forest addition during an M&A? Trimarc Vision for #ActiveDirectory can compare forests, displaying info…
It's Day 19 of 30 Days Of Vision, and it's time for the final Trimarc Dragon's Breath newsletter of 2024, so get a good whiff. 🐉 Deck the domains, jingle those GPOs, and enjoy a plethora of AD security content, a great deal on Trimarc Vision, free security tools, and insights…

#30DaysOfVision, Day 18: Vintage Passwords Cars can be classified as Classic/Antique after the 10-year mark. So can KRBTGT passwords. Trimarc Vision's Remediation Planner not only describes HOW to fix issues, it gives you the PowerShell cmdlets to DO it. spotify.trimarcsecurity.com/41KrqR8