Jimmy Su
Jimmy Su
Cyber Security Researcher
CyCraft Technology

Jimmy Su is currently a cybersecurity researcher at CyCraft. He is also a graduate student in Information Security at NTHU. He specializes in AD and AAD security and holds professional certifications in eJPT and CRTO. He has been a speaker at SECCON, government sectors, and academic institutions.

SPEECH
5/14 (Tue.) 16:30 - 17:30 7F 701F Cyber Briefing
Azure Ascend & Assault from Above

This session will focus on cloud and on-premises hybrid attacks, adopting the perspective of attackers. It will explore the scenario where, after breaching a corporate network, the attacker is unable to obtain valid credentials for lateral movement on-premises. Nevertheless, they can still employ techniques such as Pass the PRT to vertically penetrate into the corporate cloud. Furthermore, by abusing mechanisms like Cloud Kerberos Trust and Hybrid Device Join, especially after gaining cloud admin privileges through privilege escalation tactics, the attacker can inversely breach into the corporate on-premises network.