Let’s Discusses how the process of Requesting Certificate Occurs

  1. Client Generate Public/Private Key pair

Untitled

  1. Client Sends a Certificate Request to Enterprise CA Server

Untitled

  1. The CA Servers validate is the Certificate Template exist and is the user allowed to enroll to this cert

Untitled

  1. CA Generates a Certificate and signs it using Private Key

Untitled

  1. The User Stores the Certificate In the Windows Certificate Store

Untitled

What Attacker Can do if we Abused ADCS?

Untitled

Take A Look at all those techniques

Untitled

Try Harder We ain’t done yet

Untitled

Escalation

ESC1