Microsoft's Active Directory Public Key Infrastructure (PKI) implementation, known as Active Directory Certificate Services (AD CS), has unfortunately flown under the radar of the defensive industry. AD CS is widely deployed and provides attackers opportunities for credential theft, machine persistence, domain escalation, and subtle domain persistence...

By: Lee Christensen & Will Schroeder

Full Abstract & Presentation Materials: https://www.blackhat.com/eu-21/briefings/schedule/#recertifying-active-directory-certificate-services-24782
