DEF CON 31 - A Broken Marriage Abusing Mixed Vendor Kerberos Stacks - Ceri Coburn

Поделиться
HTML-код
  • Опубликовано: 1 окт 2024
  • The Windows Active Directory authority and the MIT/Heimdal Kerberos stacks found on Linux/Unix based hosts often coexist in harmony within the same Kerberos realm. This talk and tool demonstration will show how this marriage is a match made in hell. Microsoft's Kerberos stack relies on non standard data to identify it's users. MIT/Heimdal Kerberos stacks do not support this non standard way of identifying users. We will look at how Active Directory configuration weaknesses can be abused to escalate privileges on *inux based hosts joined to the same Active Directory authority. This will also introduce an updated version of Rubeus to take advantage of some of these weaknesses.

Комментарии • 12

  • @Zer0Skillz0224
    @Zer0Skillz0224 5 месяцев назад

    Are you my son one of my kids. I believe you just might fit the boxes except maybe 1 or a few at most lol

  • @theflowpowa42oshow
    @theflowpowa42oshow 4 месяца назад

    I'm the best Monito! Ya heard?

  • @bnk28zfp
    @bnk28zfp Год назад +2

    amazing!!! thank you!!!😮

  • @iwuvu5940
    @iwuvu5940 6 месяцев назад

    Alway good to listen to defcon

  • @divtest
    @divtest 11 месяцев назад

    cool

  • @geroffmilan3328
    @geroffmilan3328 Год назад

    *Very* interesting, good work.

  • @crystaldemons207
    @crystaldemons207 7 месяцев назад

    Enterprise is a self recognized term.

  • @crystaldemons207
    @crystaldemons207 7 месяцев назад

    If it sees itself self recognized as it own entity it already breached the wall..

  • @crystaldemons207
    @crystaldemons207 7 месяцев назад

    Corporate coupons.

  • @crystaldemons207
    @crystaldemons207 7 месяцев назад

    Vpn breach

  • @benkasumpa6246
    @benkasumpa6246 7 месяцев назад

    May I please get your email sir ,I got many questions