Intro to Kerberos and Common AD Privesc Attacks with Empire

In this workshop, SANS instructor and lead author of SEC565: Red Team Operations and Adversary Emulation, Jean-Francois Maes, will walk the audience through a guided hands-on workshop where common Active Directory Privilege Escalation Attacks are going to be discussed and executed using Empire version 5.

 

Attacks that will be conducted:

  • Kerberoasting
  • DCSyncing
  • Hopping parent/child trust using SID history
  • Abusing Unconstrained Delegation

At the end of the workshop, attendees will have an AD playground in their possession that can be spun up and torn down in AWS at their discretion. Attendees will also have gained familiarity with the Kerberos protocol as well as an understanding of common attacks that are performed in AD environments.

 

System Requirements

  • Debian based Virtual Machine

This workshop is ideally suited for blue teamers that want to peek behind the curtain and understand how adversaries attack AD and pentesters that may not be as familiar with AD environments yet.

Speaker Details

Event Topic

Cybersecurity, Employee Training & Development

Relevant Audiences

All State and Local Government, All Federal Government

Other Agency

Other Federal Agencies
Intro to Kerberos and Common AD Privesc Attacks with Empire
Event Type
Virtual / Online
Event Subtype
Webinar / Webcast
When
Tue, Jan 21, 2025 | 12:00 pm ET
Registration Cost
Complimentary
Website
Click here to view event website
Organizer
SANS Institute