ELENCO DELLE LEZIONI
Looney Tools – L’Oscura Arte del Red Team su Windows
Disponibile in
giorni
giorni
dopo l'iscrizione
- Presentazione del Corso e Obiettivi del Laboratorio (4:06)
- Risorse e Materiale del Corso
- Installazione del Laboratorio Windows e Active Directory (5:44)
- Configurazione del Laboratorio Active Directory – Parte 1 (8:33)
- Configurazione del Laboratorio Active Directory – Parte 2 (5:20)
- Active Directory Enumeration: Tool e Tecniche di Ricognizione (2:09)
- Invisi-Shell e PowerView: Enumeration di Active Directory (12:00)
- PowerUp e Defender Down: Privilege Escalation ed Evasione delle Difese (8:42)
- PowerHuntShares: Individuare Share e File Sensibili nella Rete (5:40)
- BloodHound CE e SharpHound: Raccolta e Analisi delle Relazioni Active Directory (10:20)
- BloodHound: Come Analizzare Percorsi di Attacco in Active Directory (4:46)
- Rubeus e Kerberoasting: Attaccare gli Account di Servizio (6:25)
- Kerberos con Rubeus: TGT, TGS e Gestione dei Ticket (5:30)
- Mimikatz e SafetyKatz: Credential Dumping su Windows (1:53)
- DCSync con Rubeus e SafetyKatz: Estrazione delle Credenziali dal Domain Controller (9:30)
- Abuso delle ACL e delle Deleghe in Active Directory (4:54)
- GenericAll: Sfruttare i Permessi ACL in Active Directory (6:27)
- Kerberos Ticket Attacks: Golden, Silver e Diamond Ticket (3:39)
- Golden Ticket: Compromettere il Dominio tramite Kerberos (4:36)
- Silver Ticket: Accesso ai Servizi tramite Ticket Kerberos (4:45)
- Diamond Ticket: Tecniche Avanzate di Abuso Kerberos (3:20)
- GPO Abuse e WriteDACL: Escalation dei Privilegi tramite Active Directory (6:22)
- Preparazione del Laboratorio SQL Server per il Red Team (6:11)
- PowerUpSQL: Enumeration e Accesso a Microsoft SQL Server (8:31)
- SQL Server Exploitation: Ottenere una Reverse Shell (7:43)
- Remote Credential Dumping: Loader e LSASS Dump da Remoto (6:16)
- Rubeus: Intercettare e Acquisire Ticket TGT (7:53)
- Overpass-the-Hash con Rubeus e SessionHunter (6:21)
- Constrained Delegation: Abuso delle Deleghe Kerberos – Parte 1 (6:23)
- Constrained Delegation: Escalation e Impersonificazione – Parte 2 (6:49)
- AD CS Abuse: Abusare dei Certificate Services per Ottenere Domain Admin (6:56)