Главная
Study mode:
on
1
Introduction
2
Agenda
3
Active Directory Certificate Services
4
Enterprise Certificate Authority
5
Certificate Enrollment
6
Certificate Templates
7
Subject Alternative Names
8
Certificate Authentication
9
Passive Certificate Theft
10
Active Certificate Theft
11
Certify
12
Advantages
13
Templates
14
Misconfiguration
15
Escalation scenarios
16
Vulnerability finding vulnerable certificate templates
17
NTLM Relay
18
Printer Bug
19
Reporting to Microsoft
20
Demo
21
Quick Summary
Description:
Explore the often-overlooked security implications of Microsoft's Active Directory Certificate Services (AD CS) in this 35-minute Black Hat conference talk. Delve into the potential for credential theft, machine persistence, domain escalation, and subtle domain persistence within AD CS. Learn about enterprise certificate authorities, certificate enrollment processes, and certificate templates. Discover techniques for passive and active certificate theft, and understand the advantages and misconfigurations of certificate templates. Examine escalation scenarios, methods for finding vulnerable certificate templates, and the NTLM Relay and Printer Bug vulnerabilities. Gain insights from the speakers' experience reporting to Microsoft and witness a live demonstration of these concepts in action.

Certified Pre-Owned - Abusing Active Directory Certificate Services

Black Hat
Add to list
0:00 / 0:00