loader from loading.io

7MS #734: Insight Recon

7 Minute Security

Release Date: 08/07/2026

7MS #740: Tales of Pentest Pwnage - Part 90 show art 7MS #740: Tales of Pentest Pwnage - Part 90

7 Minute Security

Hey friends! We’ve been on a bit of a Tales of Pentest Pwnage bender lately, so let’s keep it rolling with Part 90. (And Mom, relax — this is not one pentest story chopped into 90 parts.) Today is less of an A-to-Z story and more a pile of tips and tricks pulled from a recent string of SCCM-flavored internals — plus a tangent about a video game and a little robot Claude and I built to get my life back. Multi-tier SCCM is having a moment — I’ve never administered SCCM a day in my life, but 2026 keeps dropping me into these split-role environments. Here’s where I go to figure out...

info_outline
7MS #739: Tales of Pentest Pwnage – Part 89 show art 7MS #739: Tales of Pentest Pwnage – Part 89

7 Minute Security

Hey friends! Today is a tale of pentest pwnage episode, and this one features a path to escalation I have never seen before – one I could only find few references on the entire Internet. It happened completely by accident, but during the report readout I’m absolutely going to say it was intentional and that I totally meant to do that. Here’s what we cover: A client that’s actually doing the things – year two or three of testing this environment, and they had buttoned up so much that I had to dig deep. Great for them, freaking frustrating for me. Why my...

info_outline
7MS #738: Baby’s First ProjectDiscovery Neo show art 7MS #738: Baby’s First ProjectDiscovery Neo

7 Minute Security

Hey friends! Today I’m talking about Baby’s First Neo — and to be crystal clear, I don’t mean Keanu, and I don’t mean the R&B guy with the hat. I mean the AI-powered pentest assistant from our pals at . Also to be crystal clear: this is not a sponsorship, ad, partnership or anything of the sort. Just me sharing a thing I like so you can decide if you like it too. Here’s what we get into: Why I didn’t renew my ProjectDiscovery cloud subscription after a full year of running it side-by-side with Nessus — including the three things that ground my...

info_outline
7MS #737: Tales of Pentest Pwnage – Part 88 show art 7MS #737: Tales of Pentest Pwnage – Part 88

7 Minute Security

Hello friends! Today’s tale of pentest pwnage isn’t a start-to-finish march to DA – it’s me finally emptying out the backlog of “gosh, I’ve got to share this next time” internal network tips that have been rattling around in my head. Here’s what we get into: Don’t skip the boring stuff. Even when I’m testing the same network for the third or fourth time, I’ve got an ever-growing list of things I check every single time – because config drift has a nasty habit of quietly reintroducing problems that were fixed years ago. Get a second opinion on...

info_outline
7MS #736: Securing Your Family During and After a Disaster – Part 9 show art 7MS #736: Securing Your Family During and After a Disaster – Part 9

7 Minute Security

Hey friends! Today’s another slice of our Securing Your Family During and After a Disaster miniseries, and fair warning — it’s a bit of a Friday mood-ruiner. It’s been almost two months since my dad passed, and we’ve moved into a phase nobody prepared me for. Here’s what we get into: The paperwork nobody thinks about — my mom still doesn’t know what her monthly income looks like now, and the answer is buried in a box somebody lost the key to. Divvying up a lifetime of stuff — and why our 2019 house fire completely rewired how I think about possessions....

info_outline
7MS #735: Baby's First Cloudflare Tunnel show art 7MS #735: Baby's First Cloudflare Tunnel

7 Minute Security

Hey friends! Today’s episode has a new-to-me toy up front and some podcast housekeeping on the back half – all recorded with a raging case of the anxious parent giggidies, because my son Atticus had a big audition and I was minutes away from finding out whether we were doing tears of joy or tears of sadness. Baby’s first Cloudflare Tunnel Not a sponsor, not an ad – just a thing I’d heard about for years and finally had a reason to use. Here’s what we get into: The problem that sent me down this road: I wanted push-button status pages for clients that pull from one source...

info_outline
7MS #734: Insight Recon show art 7MS #734: Insight Recon

7 Minute Security

Hey friends! Today’s episode is a two-parter: some security stuff up front, and then a big ol’ personal celebration on the back half. If you’re strictly here for the security bits, I love you and you’re free to bail after the first half. If you’re here for both, God bless you. Part 1: Kicking the tires on Insight Recon What it is:  is an Active Directory security assessment tool out of Heath Adams’ new venture, . I signed up for early access a while back, finally got a login, and took it for a spin this week in my  lab. Not a sponsor, not an ad — just a...

info_outline
7MS #733: Tales of Pentest Pwnage – Part 87 show art 7MS #733: Tales of Pentest Pwnage – Part 87

7 Minute Security

Hey friends! Today’s episode comes to you from a parking lot in the rain, with a mint hot cocoa in hand and your host absolutely dragging his butt (D-R-A-G-G-I-N-G, not D-R-A-G-O-N – I’ve never seen a dragon’s butt and can’t speak to how mine compares). I’ve had a bunch of internals back to back lately and I’m basically a drooling dog who found a frisbee and refuses to put it down. Sleep be darned. So instead of walking through one test start to finish, I want to share a few things that have helped me claw out a foothold in environments that are otherwise really locked...

info_outline
7MS #732: Tales of Pentest Pwnage – Part 86 show art 7MS #732: Tales of Pentest Pwnage – Part 86

7 Minute Security

Hey friends! Welcome back to another Tales of Pentest Pwnage — my favorite mini-series where I share the good, the bad, and the “why didn’t I check THAT first?!” moments from real-world engagements. Today’s story has a little bit of everything: a legit path to domain admin, some late-night rabbit holes, a lesson in humility, and a villain you’ve definitely met before. (Spoiler: it’s DNS.) A couple of quick plugs before we dive in: Private GOAD training is going strong! — We just wrapped a 3-day private session (7 students — that’s max capacity!) of our Active...

info_outline
7MS #731: CARTP – Cloud Red Team Tactics for Attacking and Defending Azure – THE FINAL CHAPTER! show art 7MS #731: CARTP – Cloud Red Team Tactics for Attacking and Defending Azure – THE FINAL CHAPTER!

7 Minute Security

Hey friends! Fair warning: today’s episode is a bit of an emotional rollercoaster — we’ve got a big security win, some honest lab feedback, and a very personal share about my dad’s funeral. Buckle up.  certified, baby! — I’m officially a , courtesy of the folks at . It’s been a long time coming (I originally signed up for the live version and fell off after missing a couple Saturdays), but I came back for the self-paced 30-day version and finally finished the job. The lab experience — the good: — ~25 objectives, a solid lab guide, and a really fun...

info_outline
 
More Episodes

Hey friends! Today’s episode is a two-parter: some security stuff up front, and then a big ol’ personal celebration on the back half. If you’re strictly here for the security bits, I love you and you’re free to bail after the first half. If you’re here for both, God bless you.

Part 1: Kicking the tires on Insight Recon

  • What it is: Insight Recon is an Active Directory security assessment tool out of Heath Adams’ new venture, Breach Point. I signed up for early access a while back, finally got a login, and took it for a spin this week in my GOAD lab. Not a sponsor, not an ad — just a tool I was curious about.
  • Watch it in action: I covered the install, a couple of hiccups I hit, and some of the report output in this week’s TuesdayTOOLSday video over at 7MinSec.club.
  • The setup: Log into the portal, grab the installer, run it on a domain-joined box, then pick whether you want to scan as your current user or specify creds. Say go, wait a few minutes, and your report card shows up on the dashboard.
  • My two nitpicks (and they’re mine, not necessarily yours): The download does a full-blown install with an install footprint, and the raw scan data gets shipped back up to Insight Recon so you can view your report. I can’t help but compare everything in this space to PingCastle, where you unzip, run the EXE, and your HTML report is sitting right there on the C drive — nothing leaves the building. As someone who tries to be a good data janitor and nuke assessment data after reports go out, cloud storage is just one more place I’ve got to remember to go scrub.
  • What I really liked: The remediation guidance is legit. I clicked into a few of the critical findings — some ESC/ADCS stuff especially — and it walked me through exactly what to change, why an attacker cares, how to verify the fix afterward, and where to go read more. There’s also a “quick wins” view that pares the big list down to the biggest security impact for the least effort. The dashboard and the slide-out detail panes are genuinely pleasant to use.
  • Why this matters even for offense-only folks: We’re mostly on the offensive side with a little blue team consulting — we don’t do hands-to-keyboard remediation. But I think you become a better pentester when you can speak confidently at delivery time about not just what to fix, but the gotchas that might bite them along the way.
  • Pricing: On the podcast I guessed “a few thousand a year” and admitted that number may have come straight out of my bum cheeks. Turns out I wasn’t too far off — there’s a free tier to start, and paid runs $3,000/year with founder pricing at $1,500/year locked in for the first 25 customers. See the pricing page for the current details.
  • Verdict so far: A promising first dance. I want to give it a proper workout — run it side by side with PingCastle on a couple of real assessments and see if either one has blind spots the other covers. More on that in a future episode.

Part 2: Why I’ve got the giggidies

  • My son Cam graduated paramedic school! As of tonight he has everything signed off to go take the gargantuan national test. I’m not going to pretend I got through recording this without getting a little watery-eyed.
  • The journey: Senior year of high school, nothing career-wise floated his boat — there were subjects he tolerated and subjects he hated, and that was about it. Then a conversation with a family friend who’s a paramedic lit a fire in his belly, and he’s been running at it ever since: EMT coursework in high school, then straight into the paramedic program.
  • How he did it: He wrestles with ADHD, so he had to figure out how to hack his own brain to get through a mountain of material. Come home from five or six hours of class, eat dinner, then hit the books again and re-take his own notes. Then he’d sit down with my wife or me and do an Ace Ventura-style verbal dump of everything he’d learned that day — and any time he caught himself glitching on something, he’d write it down, keep going, then go back and shore it up. Every single night.
  • The Mr. Miyagi moment: My wife has been a nurse for 20+ years, and about six months ago she had to tell him she couldn’t help anymore because he’d surpassed her in certain areas of healthcare.
  • Yes, AI made a cameo: The night before his final scenario testing, he and I sat down and had Claude generate random practice scenarios so I could prompt him and just watch him talk for two minutes straight about airway management, medication dosing, all of it.
  • The cliffhanger: Four-ish hours of individual scenario testing, an hour-and-a-half drive to the ceremony, and no word either way on if he passed his tests. I hit the front door of the building not knowing whether I was walking into smiles or tears — and right as my hand hit the door handle, a text came in with a giant happy face: I passed. Somebody must have been cutting onions in that parking lot.
  • His people: Cam’s the youngest of the bunch — most of his classmates had been working EMTs for years — and from day one they told him “we got you, we’ll get through this together.” For the group photo on the steps afterward, one of them tried to pick him up solo and just about threw her back out, so it took three of them. That’s the little family he’s got, and I hope they stay close, because they’ve all got that beast of a test coming next month.
  • The hard part: If you’ve listened to the last few episodes, you know my dad passed away at the end of June, and that Cam was the one who found him and sprung into paramedic mode. My dad was a cop and a pilot who had enormous respect for paramedics, EMTs, and nurses, and he was one of Cam’s biggest cheerleaders. Whenever I did something my dad was proud of, he’d say, “I’m busting my buttons over here!” That’s exactly what he’d have said tonight, and not having him here to say it is a karate kick to the heart. But I’ll tell you what — I’m busting my buttons about Cam for the both of us.
  • Thank you: So many of you have reached out with condolences and shared stories of your own losses these past weeks. I’m sorry for every one of them, and I appreciate you more than I can say.

Thanks for listening — to the security stuff, the tangents, or both. Come find us at 7MinSec.com, and/or subscribe (free or paid) over at 7MinSec.club, and dig through the our notes at 7MinSec.wiki.