Explore a collection of captivating penetration testing stories from the past year in this conference talk. Delve into four intriguing scenarios where the speaker successfully compromised organizations during pentest engagements. Learn about obtaining domain admin access as an external attacker without MFA, exploiting IPv6 vulnerabilities in internal networks for complete domain compromise, breaching a well-secured organization's domain controller, and taking down an internal network when no apparent exploit existed. Gain valuable insights into real-world hacking techniques and the importance of comprehensive security measures.
Overview
Syllabus
h@cktivitycon 2020: Pentest Story Time: My Favorite Hacks From the Past Year
Taught by
HackerOne