Explore the alarming concept of botnets and command and control servers operating within organizational networks in this 43-minute Black Hat conference talk. Delve into the potential consequences of internal botnet communication across security zones, the implications for micro-segmentation, and the challenges posed to network controls. Learn about the Active Directory Botnet, including user attributes, bot registration, control panel functionality, and the Graph API. Witness a live demonstration and discover mitigation strategies to protect against this emerging threat.
Overview
Syllabus
Introduction
Agenda
Current State of Play
Active Directory Botnet
User Attributes
Bot Registration
Control Panel
Demo
Graph API
Reverse TCP Handler
Live Demo
Mitigation
Taught by
Black Hat