Главная
Study mode:
on
1
Introduction
2
Active Directory vulnerabilities
3
Story time
4
Kill chain
5
Detective
6
Intrusions
7
Group Policy Preferences
8
AES Encryption Key
9
Mitigation
10
Internal Reconnaissance
11
LDAP Global Catalog
12
Bloodhound
13
Bloodhound Demo
14
Intelligence Gathering
15
Reconnaissance
16
NTLM
17
Windows 10 workaround
18
Custom SSP
19
NTDs
20
KDC
21
Registry Keys
22
Backups
23
hashes
24
SMB authentication
25
HTML image tag
26
Custom forms
27
Mitigation for stealing hashes
28
LLM in our
29
Attack
30
Disable
31
SMP Signing
32
SMP Relay Attack
33
Enable SMP Signing
34
Kerberos
35
Kerberos in Active Directory
36
High Privileged Users
37
Golden Ticket
38
Instructions
39
The Golden Ticket
40
SPN
41
Active Directory
42
TGS Ticket
43
Silver Ticket
44
NIST
45
Seed History
46
Known Seats
47
Injection Attack
48
Shadow Attack
49
Shadow Mitigation
50
Replicating Directory
51
Domain Controller
52
Replication
53
The common denominator
54
Kerberos is more secure
55
Stolen credentials
56
Password guidelines
57
The principle of least privilege
58
Separation of privilege
59
Multifactor authentication
60
Adaptive enforcement
61
Aggregate attack service
62
Summary
Description:
Explore the intricacies of Active Directory vulnerabilities and advanced attack techniques in this comprehensive BSidesLV conference talk. Delve into privileged identity exploitation, examining various methods including Group Policy Preferences, NTLM authentication, and Kerberos attacks. Learn about internal reconnaissance tools like Bloodhound, and understand the mechanics behind Golden and Silver Ticket attacks. Discover mitigation strategies, including the principle of least privilege, separation of duties, and multifactor authentication. Gain insights into detecting and preventing intrusions, securing SMB authentication, and implementing adaptive enforcement measures. This in-depth presentation equips security professionals with the knowledge to identify, exploit, and defend against sophisticated Active Directory attacks in modern enterprise environments.

My Quest for Privileged Identity to Own Your Domain

BSidesLV
Add to list
0:00 / 0:00