PLAY PODCASTS
7MS #663: Pentesting GOAD SCCM

7MS #663: Pentesting GOAD SCCM

7 Minute Security · Brian Johnson

February 21, 202529m 41s

Audio is streamed directly from the publisher (traffic.libsyn.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

Today we live-hack an SCCM server via GOAD SCCM using some attack guidance from Misconfiguration Manager! Attacks include:

  • Unauthenticated PXE attack
  • PXE (with password) attack
  • Relaying the machine account of the MECM box over to the SQL server to get local admin