
blackhat-usa-2022-demos
Demos for the Blackhat USA 2022 talk "Taking Kerberos to the Next Level"

Demos for the Blackhat USA 2022 talk "Taking Kerberos to the Next Level"

Wireshark RDP resources

Basic PoC for CVE-2023-27524: Insecure Default Configuration in Apache Superset

Exploit for CVE-2023-46747, a remote code execution vulnerability in F5 BIG-IP, allowing unauthorized user creation and command execution.

Technical Reference to multiple relay techniques

The DCERPC only printerbug.py version

A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow

ADCS cert template modification and ACL enumeration

Fast offline auditing of Active Directory passwords using Python.

Low and slow password spraying tool, designed to spray on an interval over a long period of time


A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office365 users.

Kerberos CNAME abuse PoC

PoC for CVE-2022-40684 - Authentication bypass lead to Full device takeover (Read-only)

PowerShell SharePoint extraction + auditing tool for red/blue/purple teams. Enumerates all SharePoint sites/drives a user can access via Microsoft…

Entra ID user enumeration and auth method discovery via the public GetCredentialType API

OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions

PolicyKit CVE-2021-3560 Exploit (Authentication Agent)