I recently published a blog about an EoP technique I use in 😊

TL;DR: Local admin can run any service as gMSA just by adding gMSA account name to ObjectName property of the service in registry 😈

aadinternals.com/post/local_ad

#aadinternals

Last updated 3 years ago

My presentation slides and screen recording (HD 1080p) available at aadinternals.com/talks

The audio quality is bad, has a lot of background noise, and you can even hear Paula Januszkiewicz from the booth next to me 😁

p.s. All the passwords shown are reset 😉

#bheu #arsenal #aadinternals

Last updated 3 years ago

Okay, peeps, you chose the demos; come to see them 1:45pm at station #6!

#aadinternals #bheu #arsenal

Last updated 3 years ago

I'll be demoing in on Wednesday. Please vote below for what you want me to demonstrate in action!

#aadinternals #bheu #arsenal

Last updated 3 years ago

@bsidesorlando edition is out now!

New functionality:
▪ Get access tokens for managed identities
▪ Add new MOERA domains (.onmicrosoft.com)

And as demonstrated in my BSides Orlando talk:
▪ Modify policy details (including Conditional Access metadata) without detailed Audit Log events

Change log: aadinternals.com/aadinternals/

#aadinternals #azuread

Last updated 3 years ago