Abusing Mixed Vendor Kerberos Stacks - Exploiting Windows AD and Linux Authentication
Master Windows Internals - Kernel Programming, Debugging & Architecture
AI, Data Science & Cloud Certificates from Google, IBM & Meta
Overview
AI, Data Science & Cloud Certificates from Google, IBM & Meta — 40% Off
One plan covers every Professional Certificate on Coursera. 40% off Coursera Plus Annual.
Unlock All Certificates
Explore security vulnerabilities in mixed Kerberos environments through this DEF CON 31 conference talk that examines the problematic relationship between Windows Active Directory and MIT/Heimdal Kerberos stacks. Learn how differences in user identification methods between Microsoft's implementation and Linux/Unix systems can be exploited for privilege escalation attacks. Discover practical demonstrations of these security weaknesses, including how Active Directory configuration flaws can be leveraged to compromise Linux-based hosts within the same realm. Get introduced to new attack techniques using an updated version of the Rubeus tool, designed specifically to exploit these cross-platform authentication vulnerabilities.
Syllabus
DEF CON 31 - A Broken Marriage Abusing Mixed Vendor Kerberos Stacks - Ceri Coburn
Taught by
DEFCONConference