Beyond the MCSE: Red Teaming Active Directory Sean Metcalf (@Pyrotek3) s e a n @ adsecurity . org www.ADSecurity.org About Me Founder Trimarc, a security company. Microsoft Certified Master (MCM) Directory Services Microsoft MVP Speaker: Black Hat, BSides, DEF CON, DerbyCon, Shakacon Security Consultant / Security Researcher Own & Operate ADSecurity.org (Microsoft platform security info) | @PryoTek3 | sean @ adsecurity.org | Agenda Key AD components Offensive PowerShell Effective AD Recon AD Defenses & Bypasses Security Pro’s Checklist | @PryoTek3 | sean @ adsecurity.org | Hacking the System PS> Get-FullAccess | @PryoTek3 | sean @ adsecurity.org | | @PryoTek3 | sean @ adsecurity.org | | @PryoTek3 | sean @ adsecurity.org | | @PryoTek3 | sean @ adsecurity.org | Differing Views of Active Directory • Administrator • Security Professional • Attacker Complete picture is not well understood by any single one of them | @PryoTek3 | sean @ adsecurity.org | AD Administrator/Engineer | @PryoTek3 | sean @ adsecurity.org | Security Pro | @PryoTek3 | sean @ adsecurity.org |
Description: