PLAY PODCASTS
7MS #577: Tales of Pentest Pwnage - Part 48

7MS #577: Tales of Pentest Pwnage - Part 48

7 Minute Security · Brian Johnson

June 16, 20237m 1s

Audio is streamed directly from the publisher (traffic.libsyn.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

Holy schnikes - this episode is actually 7 minutes long! What a concept!

Anyway, today I give you a couple tips that have helped me pwn some internal networks the last few weeks, including:

  • Getting a second (and third?) opinion on Active Directory Certificate Services vulnerabilities!

  • Analyzing the root domain object in BloodHound to find some misconfigs that might equal instant domain admin access!