Certified Pre-Owned: Abusing Active Directory Certificate Services

Опубликовано: 08 Октябрь 2024
на канале: Black Hat
12,632
239

Microsoft's Active Directory Public Key Infrastructure (PKI) implementation, known as Active Directory Certificate Services (AD CS), has largely flown under the radar by both the offensive and defensive realms. AD CS is widely deployed and provides attackers opportunities for credential theft, machine persistence, domain escalation, and subtle domain persistence...

By: Will Schroeder & Lee Christensen

Full Abstract & Presentation Materials:
https://www.blackhat.com/us-21/briefi...