7MinSec / LPLITE

A place to track issues/changes to LPLITE curriculum
2 stars 0 forks source link

Bake in an Active Directory Certificate Services (ADCS) vulnerability! #24

Open 7MinSec opened 1 year ago

7MinSec commented 1 year ago

Would love to....but will mark this as a v3 enhancement for the future.

And I need to update this ticket when I revisit ADCS vuln: https://github.com/AlmondOffSec/PassTheCert/issues/13

7MinSec commented 1 year ago

Need to install ADCS to play first: https://www.hackingarticles.in/domain-escalation-petitpotam-ntlm-relay-to-adcs-endpoints/

Actually THIS might be a better resource instead: https://medium.com/r3d-buck3t/domain-takeover-with-petitpotam-exploit-3900f89b38f7