Search

Home

PNPT Studies

PJPT Studies

AD CS / Certificate Attacks (ESC1-15) (1, 8, 11 for now)

Report Writing / Client Presentation

Operationalizing Cybercrime Data (June 2025)

Username Enumeration

  • O365 and OWA username valid/not valid
  • but other portals too
  • Forgot password
  • Calendar feature (funky errors)

Remediation:

Synchronize error messages for both valid and invalid users/emails. For example:

  • If the email/user you provided exists, a password reset link will be sent to your email.