4/17 (Thu.) 16:15 - 17:00 4F 4B

Sneak Skill 100 - Hidden Attack Surface: SCCM

SCCM (Configuration Manager) is a solution provided by Microsoft to help enterprise centrally manage the configuration and software deployment of Windows computers, servers, and other devices. With the advancement of security research in AD CS, potential security risks in Microsoft's AD-related services have become a focus of attention. SCCM, due to its highly interactive nature with devices, has been found to have more than 20 known security concerns. These risks include, but are not limited to, low-privilege domain users potentially gaining control over Tier 0 assets such as MSSQL, SMS, and AD CS.

This session will focus on the security issues of SCCM, providing an in-depth analysis of its operational principles and common misconfigurations that might serve as entry points for attackers.

Jimmy Su
SPEAKER
CyCraft Technology
Cyber Security Researcher
Skyling
SPEAKER
CyCraft Technology
Cyber Security Research Intern

TOPIC / TRACK
Threat Research Forum
Live Translation Session

LOCATION
Taipei Nangang Exhibition Center, Hall 2
4F 4B

LEVEL
Intermediate Intermediate sessions focus on cybersecurity architecture, tools, and practical applications, ideal for professionals with a basic understanding of cybersecurity.

SESSION TYPE
Breakout Session

LANGUAGE
Chinese
Real-Time Chinese & English Translation

SUBTOPIC
Active Directory Security
Red Team
Blue Team