Session

Hack the domain with your favourite management tool

It is difficult to imagine deployment and management without such tools as Group Policy, Config Manager, Intune.
Since deployment and management tools have high access level, they can become double-edged sword.

Session covers how different service accounts can be compromised and used for malicious intent.
Recommendations for how to mitigate will also be given.

The session contains:

- Warm-up: Getting Network Access Account credentials.
- Domain Join Account creds extraction.
- LAPS will improve your security. Maybe.
- The King of Them All: Compromising Client Push Account.
- Passwords in SQL database.
- Recommendations.

Sergey Chubarov

Security Expert

Paço de Arcos, Portugal

View Speaker Profile

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top