
Yuval Gordon
@yug0rd
Security Researcher at Akamai.
Opinions are my own.
ID: 945000819694424064
24-12-2017 18:38:47
77 Tweet
1,1K Followers
419 Following



We just released a new beta build for PingCastle on GitHub to detect the new BadSuccessor risk that Yuval Gordon found! github.com/netwrix/pingca… Code is in the BadSuccessor branch.

I'm super happy to announce an operationally weaponized version of Yuval Gordon's BadSuccessor in .NET format! With a minimum of "CreateChild" privileges over any OU it allows for automatic escalation to Domain Admin (DA). Enjoy your inline .NET execution! github.com/logangoins/Sha…