Active Directory Attack Path in Action
Are small Active Directory misconfigurations putting you at risk?
🔗 Register for FREE Infosec Webcasts, Anti-casts & Summits –
🔗 Register for FREE Infosec Webcasts, Anti-casts & Summits –
🛝 Webcast Slides
https://www.blackhillsinfosec.com/wp-content/uploads/2026/01/SLIDES_Active-Directory-Attack-Path-in-Action.pdf
Antisyphon Training events featuring Alyssa & Kaitlyn
https://www.antisyphontraining.com/search/Alyssa%20Kaitlyn
Chapters
Join Kaitlyn Wimberley and Alyssa Snow (Black Hills Infosec – Continuous Penetration Testers) for a free one-hour webcast where they’ll walk through an example Active Directory attack path, from un-credentialed network access to Domain Administrator.
You’ll learn how attackers can escalate from un-credentialed access to Domain Admin, identify common misconfigurations, and understand how small weaknesses can combine to compromise your network.
Chat with your fellow attendees in the Black Hills Infosec Discord server:
https://discord.gg/BHIS
in the #đź”´live-chat channel.
https://www.blackhillsinfosec.com/wp-content/uploads/2026/01/SLIDES_Active-Directory-Attack-Path-in-Action.pdf
Antisyphon Training events featuring Alyssa & Kaitlyn
https://www.antisyphontraining.com/search/Alyssa%20Kaitlyn
Chapters
- (00:00) - Intro - Active Directory Attack Path in Action
- (02:06) - Alyssa and Kaitlyn Fun Facts
- (02:43) - Webcast Overview
- (03:34) - Web Services
- (06:20) - Jenkins Env Hunter - Tool by Kent Ickler!
- (07:53) - Test Credentials
- (08:57) - Username Enumeration
- (12:12) - Domain Enumeration
- (14:11) - NetExec
- (15:12) - BloodHound.py
- (16:29) - SharpHound
- (17:28) - ADExplorer
- (19:30) - Convert Snapshot
- (20:07) - BOFHound
- (22:46) - Identify Attack Path
- (23:55) - Abusing RBCD for Local Priviledge Escalation
- (26:43) - Machine Account Quota
- (27:40) - Resource-Based Constrained Delegation Expolitation Flow
- (30:36) - Create Computer Object
- (31:58) - Set Delegation
- (33:22) - Delegation Attribute
- (33:53) - Select a Target Account
- (34:34) - Avoid Protected Users
- (35:24) - Get Privileged TGS
- (37:07) - Delegation Failure Example
- (37:39) - Escalation Success
- (39:18) - Dump local Secrets
- (40:53) - Domain Admin Compromised
- (41:39) - Attack Path Summary
- (44:24) - Defensive Considerations
- (45:42) - Related Antisyphon Courses
- (46:08) - More Resources
- (47:27) - Q&A Start
- (50:03) - Alternative Path for Attackers
- (51:30) - Whats the Assumed Compromize Course like?
- (56:27) - Are Extended Test Timelines an advantage?
- (57:51) - BHIS "Side Quest" capabilities
- (58:55) - BHIS CPT On-Boarding Process
- (01:02:29) - Getting the Ball Rolling on Test Assessments
- (01:04:22) - The Price of Continous Pen Testing
- (01:05:30) - Favorite Things About Customer CPTs
Join Kaitlyn Wimberley and Alyssa Snow (Black Hills Infosec – Continuous Penetration Testers) for a free one-hour webcast where they’ll walk through an example Active Directory attack path, from un-credentialed network access to Domain Administrator.
You’ll learn how attackers can escalate from un-credentialed access to Domain Admin, identify common misconfigurations, and understand how small weaknesses can combine to compromise your network.
Chat with your fellow attendees in the Black Hills Infosec Discord server:
https://discord.gg/BHIS
in the #đź”´live-chat channel.
Brought to you by:
Black Hills Information Security
Antisyphon Training
Active Countermeasures
Wild West Hackin Fest
Episode Video
Creators and Guests
Host
Deb Wigley
Deb Wigley is the Director of Kindness and Generosity for Black Hills Information Security (BHIS). She joined the team in 2019 after celebrating 20 years of working in customer engagement and satisfaction in the Automotive Industry. She brings her passion for helping and serving people to the work she does at BHIS. The part of her role she enjoys the most is interacting with the community through our webcasts and educational content, our Discord servers, and conferences. She loves being a mom to her four kiddos and in her spare time, she enjoys reading, hiking, frequently entertaining a beach day, and being whisked away on rewilding adventures with her husband of 20+ years as much as possible.
Host
Jason Blanchard
Jason Blanchard has been happily adopted into the hacker community at Black Hills Information Security (BHIS) since 2019, even though he “works in marketing.” He’s had every dream job imaginable: teaching filmmaking, owning the world’s most famous comic book store, and fostering the infosec community efforts for SANS. While some at BHIS call him the “Director of Excitement,” he is formally known as the Excitement Co-Creator. In his day-to-day work of “sucking at capitalism,” Jason enjoys helping others, sharing his knowledge, and giving away lots of free stuff. When he’s not working, Jason spends time with his wife and daughter, hosts a semiweekly job-hunting Twitch stream, and enjoys writing short stories and performing stand-up comedy.
Guest
Alyssa Snow
Alyssa Snow began working at Black Hills Information Security (BHIS) in March 2022 as a Security Consultant. Previously working on an internal offensive security team at Teradata, she now performs penetration tests to help BHIS customers identify risk and improve their security posture. Alyssa says she chose to work at BHIS because she has been inspired by the team full of people who are passionate about security and educating the community. She thinks the best part is constantly getting exposed to new challenges. Outside of work, Alyssa can be found working out, spending time with loved ones, and getting outdoors as much as possible.
Guest
Bryan Strand
Bryan Strand began working for Black Hills Information Security (BHIS) in 2017 as a Manager of Business Capture and a Consultant. Prior to joining the team at BHIS, he worked in a variety of fields including psychology, sales, and aviation. Currently, Bryan is responsible for communicating with clients and guiding them toward a better security posture. Bryan and John have known each other for more than 30 years, and when an opportunity became available at BHIS, he couldn’t pass up working with his family. Bryan loves his team and loves helping to create environments that others would want to work in every day. Away from work, Bryan enjoys reading, being outdoors, and spending time with family and friends.
Guest
Kaitlyn Wimberley
Kaitlyn Wimberley became an official part of Black Hills Information Security (BHIS) in March 2022, after being a long-time Community Leader on the BHIS Discord server. She started on the SOC side as an Consultant doing “whatever anyone will let me do to help the good guys win more and the bad guys win less,” and has recently switched over to the Security Consultant team. She chose BHIS because of the goodness and generosity in the things she saw from them (and because everyone there is “crazy smart and inspiring”). She loves doing good things with great people, as well as the encouragement she receives in both her professional and personal growth. Outside of work, Kaitlyn enjoys making music, playing video games, learning anything about everything, and going on family adventures.