The (Un)Rightful Heir - My dMSA Is Your New Domain Admin
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore a critical security vulnerability in Active Directory through this 30-minute conference talk that introduces the BadSuccessor attack, a novel exploitation technique targeting Delegated Managed Service Accounts (dMSA). Learn how attackers can abuse dMSA configurations to achieve privilege escalation and gain domain administrator access in Windows environments. Discover the technical mechanics behind Kerberos ticket manipulation and NTLM hash extraction methods used in this attack vector. Understand the security implications of misconfigured service accounts and examine real-world scenarios where these vulnerabilities can be exploited. Gain practical knowledge of detection methodologies and defensive strategies to identify and prevent BadSuccessor attacks in your organization's Active Directory infrastructure.
Syllabus
- Date/Time: Monday, 17:00–17:45
Taught by
BSidesLV