ESC1 攻击详解
semperis.com | 博客 | #active-directory | #privilege-escalation | #vulnerability | #defense | #ad-cs | #esc1 | #certificate-templates
摘要
ESC1 攻击滥用 AD CS 中允许请求者自带主题名并支持客户端认证 EKU 的证书模板,为任意账户(如 Domain Admin)申请证书以冒充其身份。文章解析攻击原理、检测与加固方法。
- 发布时间
- 收录时间
Skip to content