Hardening Library

Security research, tutorials, and product updates from the Retrievy team

Multi-cloud security, FortiGate hardening, AD/identity risk, and configuration drift. Written by operators for operators.

14 articles match
of 34 total
Kerberoasting in 2026: Why This Attack Still Works on Your AD
Threat Intel
2 min read

Kerberoasting in 2026: Why This Attack Still Works on Your AD

Kerberoasting persists because most environments still have SPN-mapped service accounts with RC4 enabled and passwords that have not rotated in years. Here is what continuous ISPM monitoring catches and what good looks like.

R
Retrievy Team
Read Now
Storm-2697's Go Ransomware Spreads Itself Across Your Entire Network
Threat Intel
3 min read

Storm-2697's Go Ransomware Spreads Itself Across Your Entire Network

The Gentlemen ransomware, deployed by Storm-2697 affiliates, is a Go-based encryptor that combines ephemeral per-file key encryption with aggressive built-in lateral movement to self-propagate across networks without operator intervention.

R
Retrievy Team
Read Now
YellowKey CVE-2026-45585 Bypasses BitLocker Before a Patch Lands
Threat Intel
3 min read

YellowKey CVE-2026-45585 Bypasses BitLocker Before a Patch Lands

Microsoft has issued a mitigation for CVE-2026-45585, a publicly disclosed BitLocker bypass zero-day dubbed YellowKey, while a full patch is still pending. CVSS 6.8 understates the risk for encrypted-disk-dependent security models.

R
Retrievy Team
Read Now
AI-Generated Zero-Day Exploit Bypasses 2FA at Scale in the Wild
Threat Intel
4 min read

AI-Generated Zero-Day Exploit Bypasses 2FA at Scale in the Wild

Google has identified a threat actor using a zero-day exploit likely built with AI assistance — the first confirmed in-the-wild use of AI for vulnerability discovery and exploit generation, targeting 2FA mechanisms.

R
Retrievy Team
Read Now