Explore the intricacies of Active Directory vulnerabilities and advanced attack techniques in this comprehensive BSidesLV conference talk. Delve into privileged identity exploitation, examining various methods including Group Policy Preferences, NTLM authentication, and Kerberos attacks. Learn about internal reconnaissance tools like Bloodhound, and understand the mechanics behind Golden and Silver Ticket attacks. Discover mitigation strategies, including the principle of least privilege, separation of duties, and multifactor authentication. Gain insights into detecting and preventing intrusions, securing SMB authentication, and implementing adaptive enforcement measures. This in-depth presentation equips security professionals with the knowledge to identify, exploit, and defend against sophisticated Active Directory attacks in modern enterprise environments.
My Quest for Privileged Identity to Own Your Domain