5/16 (Thu.) 09:30 - 10:00 7F 701G

分分鐘拿下整個網域- 關於 AD,你還疏忽了什麼?

According to DEVCORE's statistics from dozens of Red Team Assessments conducted over the past year, more than 50% of enterprise internal networks have misconfigurations related to Active Directory Certificate Services (AD CS). These misconfigurations allow attackers to gain domain admin privileges within minutes, even with just a low-privileged domain account.

In this presentation, we will present anonymized examples of these misconfigurations in various enterprises, demonstrate how attackers exploit them, and emphasize the importance of regularly assessing AD CS as a critical infrastructure component within an organization's internal network. We will also provide guidance on avoiding common configuration mistakes and mitigating measures for specific scenarios.

Vtim
SPEAKER
Red Team Lead
DEVCORE

TOPIC / TRACK
Blue Team Forum

LOCATION
Taipei Nangang Exhibition Center, Hall 2
7F 701G

LEVEL
Intermediate Intermediate sessions focus on cybersecurity architecture, tools, and practical applications, ideal for professionals with a basic understanding of cybersecurity.

SESSION TYPE
Breakout Session

LANGUAGE
Chinese

SUBTOPIC
Active Directory Security
Red Team
Enterprise Security