Главная
Study mode:
on
1
Intro
2
External Network - Top Three
3
Password Spraying - Identify User Accounts
4
Active Reconnaissance
5
Password Spraying the Seasons Once you have your list of usernames begin password spraying.
6
Cheers to the Summer of 2017!
7
Weak Domain Passwords - Remediation
8
Metasploit Rogue SMB Server
9
Capture NTLMV2 Credentials
10
Good Users vs Bad Network Egress Rules
11
Lack of Multi-Factor Authentication (MFA)
12
Exposed Administrator Panels Used for website or application maintenance Enhanced feature set which is a highly valuable target
13
Lack of Principle of Least Privilege
14
Legacy Windows Broadcast Protocols
15
Hash Captured with Responder
16
SMB Relay Attack
17
MultiRelay.py Example
18
SMB Signing Disabled - Remediation
19
Cached Credentials - Remediation
20
Insecure Password Storage in GPP
21
Insecure GPP Password Storage - Remediation Apply B2962486 prevents password data from being stored in GPP
22
Pivoting through VPN Split Tunneling
23
VPN Split Tunneling - Remediation
24
Shared Virtual Center - Remediation
25
Conclusion
Description:
Explore pen testing techniques and common security vulnerabilities in this 49-minute conference talk from GrrCON 2017. Dive into external network attacks, focusing on password spraying, active reconnaissance, and exploiting weak domain passwords. Learn about Metasploit's rogue SMB server, capturing NTLMV2 credentials, and the dangers of exposed administrator panels. Examine the risks associated with lack of multi-factor authentication, principle of least privilege, and legacy Windows broadcast protocols. Discover SMB relay attacks, insecure password storage in Group Policy Preferences, and pivoting through VPN split tunneling. Gain insights on remediation strategies for various vulnerabilities, including SMB signing, cached credentials, and shared virtual centers. Enhance your cybersecurity knowledge and learn how to make a pen tester's job more challenging.

Pen Test War Stories - Why My Job Is So Easy and How You Can Make It Harder

Add to list
0:00 / 0:00