CertPotato – Using ADCS to privesc from virtual and network service accounts to local system

The goal of this blog post is to present a privilege escalation I found while working on ADCS. We will...

DirectAccess and Kerberos Resource-based Constrained Delegation

Background Are you tired of working from home due to COVID? While this is quite a unique situation we find...

Chaining multiple techniques and tools for domain takeover using RBCD

Intro In this blog post I want to show a simulation of a real-world Resource Based Constrained Delegation attack scenario...