Name
A2. BloodHound: Use and Abuse
Track
Architecture & Operations
Date
Tuesday, June 8, 2021
Time
10:00 AM - 11:00 AM
Description

BloodHound is a popular open-source tool used by both attackers and defenders for Active Directory analysis and escalation. The tool is designed to bring a graphical interface to AD structure, and how objects link together with permissions and attack vectors. Since attackers oftentimes use this tool to escalate in the network, an IT team can use the same tool to understand and negate the same escalation paths. This presentation is geared to teach about effective operations and analysis techniques just past the basic "Path to DA" button. "Attackers think in Graphs"

Learner Objectives

After the presentation, the viewer will:

  •  Be able to find hidden misconfigurations in the network and maximize your use of Bloodhound
  • Be familiar with popular open-source BloodHound utility tools
  • Be able to understand the basics of the Cypher query language