Modern Domain Deception - Risks, Limits and potentiality | SANS@MIC Talk
Nowadays most enterprises are build up using Microsoft Windows Active Directory, a specific environment that is based on trust. This specific architecture design useless most of the deception option available. So as Threat Hunter we need to find the unknown, but how hunt for evil if the infrastructure is based on trust and common Deception option are unavailable, or introduce more risk than mitigation?
The talk is the evaluation of the actual limitations, issues and risks of common deception mechanisms and the potentiality if we change the mindset approaching the issue from a different angle.
Speaker Bio
Agostino Panico is an IT SEC enthusiast, always looking to learn more, and putting into practice what he learns. He has been enjoying IT since 1991 when he was 5 years old, with his first love: Commodore 64. Agostino has been pentesting professionally since 2007. He holds a Master Degree in Computer Science, and he is a candidate for a PhD in Incident Handling and Penetration Testing. Agostino is excited to be mentoring for SANS because it provides an opportunity develop a one-on-one relationship with the students as they learn the material and how it applies to their environment.