Certifried
CVE-2022–26923
Theory
Practice
Detecting unpatched targets
certipy req -u "$USER@$DOMAIN" -p "$PASSWORD" -dc-ip "$DC_IP" -target "$ADCS_HOST" -ca 'ca_name' -template 'User'Conducting the attack
Creating a computer account
dNSHostName and servicePrincipalName modification
dNSHostName and servicePrincipalName modificationObtaining a certificate
Resources
Last updated