Navigation X
https://leakforum.io/images/care/like.gif

AD CS Attacks for Red and Blue Teams

posted by Sauron and Last Post: 2 days ago


AD CS Attacks for Red and Blue Teams  148
Sauron Moderator
2,004
Posts
1,967
Threads
Moderator
#1
[Image: Screenshot-1.png]
Identity plays a crucial role in security of an enterprise environment. Certainly, Identity is the new security perimeter. In an enterprise environment, Identity is usually managed by Active Directory or by Azure AD in case of a Hybrid Identity. An often-overlooked part of enterprise infrastructure is Active Directory Certificate Services (AD CS). AD CS is a Windows Server Role that implements Public Key Infrastructure and can be used for user authentication, machine authentication, document signing, email signing, file encryption and so much more. This makes AD CS a crucial part of Identity Management.
[Image: img-1.png]
Unfortunately, not many professionals understand AD CS. This, of course, makes it harder to secure it against even the simplest attacks that may result in compromise of the entire enterprise environment.
We have years of experience of teaching classes at world’s leading organizations and hacker conferences and Red Team operations against some of the better enterprise environments. Drawing from that experience, we have created this course and lab that helps you in getting started with Attacking and Defending AD CS.
The AD CS Attacks for Red and Blue Teams lab provides course videos, learning aids and a meticulously created lab environment that helps you in understanding AD CS security in-depth. The lab is beginner friendly and you don’t need any prior experience with AD CS. We cover a lot of interesting topics like CA enumeration, Local Privilege Escalation, Persistence by abusing Certificates, Domain Privilege Escalation by - abusing CA, Certificate Templates, Abusing Certificates – Client Auth, EFS, Code Signing, SSH etc., Domain persistence after compromising CA, Network Pivoting by abusing VPN Certificates, Abusing certificates on Linux machines, Lateral movement to Azure and a lot more!
What's Included
[Image: image%20new.jpg]
  • Access to a lab environment (One/Two/Three months) with updated Server 2022 and Linux machines. Lab can be accessed using a web browser or VPN.
  • A ready to use student VM in the cloud that has both Windows and Linux tools pre-installed.
  • ​​Life time access to all the learning material (including course updates).
  • 11+ hours of video course
  • Slides, Lab Manual, Walk-through videos and Diagrams as learning aid.
  • Lab manual for solving the labs.
  • One exam attempt for the Certified Enterprise Security Professional – AD CS (CESP - ADCS) certification.
  • ​Support on email and Discord.
What will you Learn?
[Image: web-img-2-3.png]
  • Performing Red Team operation or Penetration Test against a modern AD CS environment.
  • AD CS is not the only CA in the lab. Learn and practice attacks against other Certificate Services too!
  • Pivot to Azure by abusing Azure Certificate-based authentication.
  • Abuse VPN certificates to pivot to protected networks .
  • Abuse Trusted CAs across the AD forests.
  • Learn to execute attacks from both Windows and Linux.


Hidden Content
You must register or login to view this content.

Password:leakforum.io

[Image: tumblr-b540b318feeef992063cb2e5ff500a57-...resize.gif]
Reply
del1ja500 Member
41
Posts
0
Threads
Member
#2
thanks mate
Reply
dielianhua Member
24
Posts
0
Threads
Member
#3
ok let me see it
Reply
tngerrard Junior Member
6
Posts
0
Threads
Junior Member
#4
thanks a lot
Reply
Cr0cki0g0 Member
82
Posts
0
Threads
Member
#5
Thank lot
Reply

Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
or
Sign in
Already have an account? Sign in here.


Users browsing this thread: 1 Guest(s)