Log inSign up
📔 Michael Grafnetter
447 posts
📔 Michael Grafnetter profile banner
@MGrafnetter

📔 Michael Grafnetter

@MGrafnetter
Principal Security Researcher @SpecterOps, Microsoft MVP Identity & Access + Enterprise & Platform Security
Prague, Czech Republic
dsinternals.com
Joined October 2015
140
Following
3,924
Followers
RepliesRepliesRepostsRepostsMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • Pinned
    @MGrafnetter
    📔 Michael Grafnetter
    @MGrafnetter
    Aug 7
    CVE-2026-34348 exploitation demo from my #BHUSA "Pass-the-Passkey Family of Attacks" talk: WebAuthn assertion from recent YubiKey authentication is extracted from Windows Event Log and replayed against Microsoft Entra ID using Passkey Injector. Whitepaper: specterops.io/passkeys
    Image
    00:00
    16
  • @MGrafnetter
    📔 Michael Grafnetter
    @MGrafnetter
    Aug 17
    Excited to speak at HIP Conf 26 in Nashville! My session “KDS Root Keys and Where to Find Them” will cover online and offline attacks against virtually all KDS Root Key scenarios. #HIPConf registration: register.hipconf.com/7B9lvD
    HipConf conference badge
  • @MGrafnetter
    📔 Michael Grafnetter
    @MGrafnetter
    Aug 17
    Last week I had a nice chat with @merill, where we discussed my recent #BHUSA talk about passkey security and what it meant for Entra admins.
    Image
    Pass-the-Passkey: What Michael Grafnetter's Black Hat Research Means for Entra Admins
    From entra.news
    1
  • @MGrafnetter
    📔 Michael Grafnetter
    @MGrafnetter
    Aug 13
    It wasn’t me! But seriously, avionics, medical devices, or critical infra should always be out of bounds and only pentested in controlled environments. I historically discovered critical vulnerabilities in linear accelerators or elevators, but I would never dare exploit them.
    @BleepinComputer
    BleepingComputer
    @BleepinComputer
    Aug 11
    Delta probes Wi-Fi deauth attack on flight carrying DEF CON attendees bleepingcomputer.com/news/security/… bleepingcomputer.com/news/security/…
  • @MGrafnetter
    📔 Michael Grafnetter
    @MGrafnetter
    Aug 6
    Hacker summer camp badge pickup complete!
    Image
Advertisement
Advertisement