Conversation

and I give you "Certificates and Pwnage and Patches, Oh My!" posts.specterops.io/certificates-a . We clarify some misconceptions we had about AD CS, explain the KB5014754 patch and its implications, and detail some of the awesome AD CS work from people like . Enjoy!
Replying to and
Very great blog post, and thank you for the mentions! For ESC7, an easier technique that I’ve used and described in one of my earlier blog posts is to abuse the privileges of issuing failed enrollment attempts for the SubCA template
1
8
Replying to and
Thank god for the sidextension patch! We ran into a customer in Full Enforcement mode a few weeks ago but manage to solve it using lolbins (certreq.exe). I were planning to add it to Certify but you guys took care of it 🏆🙂
1