The (Un)Rightful Heir - My dMSA Is Your New Domain Admin
AI, Data Science & Cloud Certificates from Google, IBM & Meta
UC San Diego Product Management Certificate — AI-Powered PM Training
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore a critical security vulnerability in Active Directory through this 30-minute conference talk that introduces the BadSuccessor attack, a novel exploitation technique targeting Delegated Managed Service Accounts (dMSA). Learn how attackers can abuse dMSA configurations to achieve privilege escalation and gain domain administrator access in Windows environments. Discover the technical mechanics behind Kerberos ticket manipulation and NTLM hash extraction methods used in this attack vector. Understand the security implications of misconfigured service accounts and examine real-world scenarios where these vulnerabilities can be exploited. Gain practical knowledge of detection methodologies and defensive strategies to identify and prevent BadSuccessor attacks in your organization's Active Directory infrastructure.
Syllabus
- Date/Time: Monday, 17:00–17:45
Taught by
BSidesLV