[Attack]tive Directory: Compromising a Network in 20 Minutes Through Active Directory

Поділитися
Вставка
  • Опубліковано 8 лют 2025

КОМЕНТАРІ • 24

  • @LucasKatashit
    @LucasKatashit 3 місяці тому +6

    shroud, king of reddit, is now AD red teamer. What a legend!

  • @aqua_ninja
    @aqua_ninja 16 днів тому

    Thank you Shroud

  • @SrRunsis
    @SrRunsis 6 місяців тому +4

    Awesome talk! There should be a 2024 version now

  • @OSGoat
    @OSGoat 3 роки тому +4

    Awesome. Thats a good content for AD pentesting knowledge

  • @Tathamet
    @Tathamet Рік тому +5

    Thanks I did not know Shroud knows INFOSEC!

  • @0xbitbybit
    @0xbitbybit 2 роки тому +3

    Great talk and explanations!

  • @alexacohen12
    @alexacohen12 4 роки тому +9

    This is awesome! Thanks for the great content, I learned so much

  • @socat9311
    @socat9311 3 роки тому +10

    Great but cant see the projector screen, please show it in other presentations

  • @devkaushik9618
    @devkaushik9618 10 місяців тому +1

    Learned a lot! Thanks

  • @computerb0y27
    @computerb0y27 9 місяців тому

    still relevant and good!

  • @the_sandman00
    @the_sandman00 Рік тому +8

    If your devices are relying on LLMNR to communicate, they are already broken 😂

  • @benedictcharles
    @benedictcharles 4 роки тому +3

    I thought you cannot relay hash directly to the Domain Controller, since SMB signing is set to ON by default on DC. How is it you are showing it can be done here?

  • @dinlaurencebabia6578
    @dinlaurencebabia6578 Рік тому +1

    Can someone help? At 12:57, what does it mean if using FQDN to access something, it will break it?

    • @behindYOUR6
      @behindYOUR6 9 місяців тому

      FQDN to access something refers to specifying the complete domain name for a resource, including the hostname and the domain suffix (e.g., hostname.example.com)
      "break it" is related to LLMNR. ( look at the example how he got the NTLM hash.
      break it means in local networks for name resolution when the DNS resolution fails, typically due to DNS server unavailability or misconfiguration. then the LLMNR coming up to play.
      try to google how FQDN & LLMNR related to each other.

  • @mdsathees3747
    @mdsathees3747 3 роки тому +1

    It would be great if you share the presentation slides here.

  • @RyanBess
    @RyanBess 4 роки тому

    With the wpad example were you able to crack the machine account? If so I’d like to see a video showing how that is accomplished in a reasonable amount of time. By default every 30 days Windows boxes change their password.

  • @jerryxie777
    @jerryxie777 9 місяців тому

    So you really don't think anyone can totally understand kerberos will watch your video😂😅😊