OffSec Live | Hutch

Поділитися
Вставка
  • Опубліковано 5 січ 2025
  • We outlined the walkthrough of Hutch, emphasizing Active Directory due to previous sessions being web-focused.
    This tutorial included practical demonstrations of network scanning and exploitation techniques involving LDAP misconfigurations, WebDAV shares, and impersonation privileges, aiming to provide a comprehensive understanding of attacking and mitigating Active Directory vulnerabilities.
    We explained the importance of understanding both attack and defense mechanisms, demonstrating mitigation strategies for vulnerabilities explored during the session, such as fixing anonymous LDAP authentication and improper permission settings.
    Hutch is a Proving Grounds Practice machine: portal.offsec....
    Join OffSec Live on Fridays: / offsecofficial
    We do demonstrations and walkthroughs of course topics and Proving Grounds machines. Additionally, sessions offer career guidance, including how to build a resume, how to break into #cybersecurity, and interview tips.
    .
    .
    .
    active directory, active directory enumeration, active directory attacks, LDAP misconfigurations

КОМЕНТАРІ •