Главная
Study mode:
on
1
Motivation
2
Major Breaches
3
Target Breach
4
Critical Flaw
5
How Target blew it
6
A bottomless budget
7
Chip and pin update
8
US Senate report
9
Summary
10
Sands Casino
11
The Attack
12
Breach Diagram
13
How do we stop this
14
What happened
15
Breaches
16
Is this a problem
17
Google Search
18
Incident Reports
19
Minicat
20
Impact of credentials
21
Scan
22
Collection
23
Exploit Failed
24
Admin Approval Mode
25
Forced Guest
26
Special Rights
27
Remote Desktop
28
Troubleshooting
29
If nothing is open
30
Vulnerability scanners
31
Sharing a password
32
Local accounts
33
Remediation
34
Prevention
35
Smartcards
36
Authentication Policies
37
Tools
Description:
Explore a comprehensive analysis of credential-based privilege escalation in large-scale network breaches. Delve into the critical role of exposed credentials in transforming single-system access into widespread network compromise. Examine real-world examples, including the Target and Sands Casino breaches, to understand attack methodologies and their impact. Learn about a framework developed to identify and combat credential exposure at scale, focusing on constructing compromise chains to determine maximal access and privileges gained. Discover prevention strategies, including smartcards and authentication policies, and gain insights into tools for both offensive and defensive purposes. Led by Matt Weeks, a seasoned cybersecurity expert, this talk provides valuable knowledge for understanding and mitigating credential-based attacks in complex network environments.

Credential Assessment - Mapping Privilege Escalation at Scale

Cooper
Add to list
0:00 / 0:00