BlackHat USA 2017/DEF CON 25 Roundup
ID: e0796865-1627-5736-bcc3-041f88423a87
STIX ID: report--e0796865-1627-5736-bcc3-041f88423a87
Feed Name: SpecterOps Blog
A recap of notable talks and tool releases from BlackHat USA 2017 and DEF CON 25, covering Active Directory ACL abuse (ACE) and BloodHound ACE integration for privilege escalation, automated collection/enrichment (ACE), Koadic COM-based C2, automated lateral movement via GoFetch, JSON/.NET deserialization vulnerabilities enabling RCE, UAC bypass techniques, PowerShell offensive workshops, sRDI shellcode generation, and offensive uses of certutil.exe. The post highlights both offensive capabilities that increase attacker options and defensive tools/resources for detection and hunting.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
