Adversaries are increasingly targeting Active Directory Certificate Services (AD CS) to escalate privileges and maintain persistence within networks. By exploiting insecure certificate templates and design flaws, attackers can impersonate privileged accounts and bypass traditional security controls like password resets. This technique allows for unauthorized access without the need for traditional malware.

Relevant URL: https://unit42.paloaltonetworks.com/active-directory-certificate-services-exploitation/