Beyond the Mcse: Active Directory for the Security Professional

  Рет қаралды 17,743

Black Hat

Black Hat

Күн бұрын

by Sean Metcalf
Active Directory (AD) is leveraged by 95% of the Fortune 1000 companies for its directory, authentication, and management capabilities. This means that both Red and Blue teams need to have a better understanding of Active Directory, it's security, how it's attacked, and how best to align defenses. This presentation covers key Active Directory components which are critical for security professionals to know in order to defend AD. Properly securing the enterprise means identifying and leveraging appropriate defensive technologies. The provided information is immediately useful and actionable in order to help organizations better secure their enterprise resources against attackers. Highlighted are areas attackers go after including some recently patched vulnerabilities and the exploited weaknesses. This includes the critical Kerberos vulnerability (MS14-068), Group Policy Man-in-the-Middle (MS15-011 & MS15-014) and how they take advantages of AD communication.
Some of the content covered:
Differing views of Active Directory: admin, attacker, and infosec.
The differences between forests and domains, including how multi-domain AD forests affect the security of the forest.
Dig into trust relationships and the available security features describing how attack techniques are impacted by implementing these trust security features.
AD database format, files, and object storage (including password data).
Read-Only Domain Controllers (RODCs), security impact, and potential issues with RODC implementation.
Key Domain Controller information and how attackers take advantage.
Windows authentication protocols over the years and their weaknesses, including Microsoft's next-generation credential system, Microsoft Passport, and what it means for credential protection.
Security posture differences between AD on-premises and in the cloud (Microsoft Azure AD vs Office 365).
Key Active Directory security features in the latest Windows OS versions - the benefits and implementation challenges.
Let's go beyond the standard MCSE material and dive into how Active Directory works focusing on the key components and how they relate to enterprise security.

Пікірлер: 12
@marianarlt
@marianarlt 7 ай бұрын
Cat tries to eat plushy fish: 80mio views in two days Very good in-depth talk about the technologies that run our world that are still valuable years later:
@virtualallocex1062
@virtualallocex1062 3 жыл бұрын
Excellent Talk, thanks a lot for sharing that great knowledge!
@RedstoneFTW
@RedstoneFTW 5 жыл бұрын
You had me at Star trek =)
@AZTEch203
@AZTEch203 5 жыл бұрын
Great work!
@Wrexthor
@Wrexthor 7 жыл бұрын
Great talk!
@shanewilliams5326
@shanewilliams5326 7 жыл бұрын
Eye opening!
@brysendash8748
@brysendash8748 3 жыл бұрын
sorry to be so off topic but does any of you know of a trick to log back into an instagram account..? I stupidly forgot the login password. I would love any tricks you can offer me
@deaconjay6224
@deaconjay6224 3 жыл бұрын
@Brysen Dash instablaster =)
@brysendash8748
@brysendash8748 3 жыл бұрын
@Deacon Jay i really appreciate your reply. I found the site thru google and im in the hacking process now. Looks like it's gonna take a while so I will get back to you later when my account password hopefully is recovered.
@brysendash8748
@brysendash8748 3 жыл бұрын
@Deacon Jay it worked and I finally got access to my account again. I'm so happy:D Thank you so much you really help me out !
@deaconjay6224
@deaconjay6224 3 жыл бұрын
@Brysen Dash Glad I could help xD
TR19: Fun with LDAP and Kerberos: Attacking AD from non-Windows machines
59:06
TROOPERS IT Security Conference
Рет қаралды 27 М.
💩Поу и Поулина ☠️МОЧАТ 😖Хмурых Тварей?!
00:34
Ной Анимация
Рет қаралды 2,1 МЛН
Brawl Stars Edit😈📕
00:15
Kan Andrey
Рет қаралды 59 МЛН
Как подписать? 😂 #shorts
00:10
Денис Кукояка
Рет қаралды 8 МЛН
How To Get Married:   #short
00:22
Jin and Hattie
Рет қаралды 24 МЛН
Abusing Microsoft Kerberos: Sorry You Guys Don't Get It
50:33
Black Hat
Рет қаралды 20 М.
Securing Active Directory: Resolving Common Issues
1:25:54
Trimarc Security
Рет қаралды 6 М.
Weaponizing Active Directory
58:28
Black Hills Information Security
Рет қаралды 6 М.
Protecting Users w/ Protected Users
23:15
Trimarc Security
Рет қаралды 1 М.
You Shall Not PASS - Analysing a NSO iOS Spyware Sample
40:22
Black Hat
Рет қаралды 3,3 М.
SANS Webcast: Kerberos & Attacks 101
46:38
SANS Offensive Operations
Рет қаралды 27 М.
Cybersecurity Architecture: Networks
27:31
IBM Technology
Рет қаралды 126 М.
Top Active Directory Attacks: Understand, then Prevent and Detect
40:01
💩Поу и Поулина ☠️МОЧАТ 😖Хмурых Тварей?!
00:34
Ной Анимация
Рет қаралды 2,1 МЛН