A Logo

Feel free to include my content in your page via my
RSS feed

Help Irongeek.com pay for
bandwidth and research equipment:

Search Irongeek.com:

Affiliates:
Irongeek Button
Social-engineer-training Button

Help Irongeek.com pay for bandwidth and research equipment:

paypalpixle


Invoke-EmpireHound - Merging BloodHound & Empire for Enhanced Red Team Workflow - Walter Legowski Derbycon 2018 (Hacking Illustrated Series InfoSec Tutorial Videos)

Invoke-EmpireHound - Merging BloodHound & Empire for Enhanced Red Team Workflow
Walter Legowski
Derbycon 2018

Empire & BloodHound are two great Post-Exploitation Tools. Since I am a PowerShell fanboy, I decided to glue them together, just to see what could happen... and so I created 3 modules: EmpireStrike - to control Empire Server(s). CypherDog - to interact with the BloodHound Database. EmpireDog - to automate CypherDog/EmpireStrike interactions. In this presentation I will demonstrate how to add the Empire infrastructure to the BloodHound Graph and control both BloodHound & multiple Empire servers from a single PowerShell prompt, with changes to Empire automatically reflected in the BloodHound Database and Graph.

French guy living in the Netherlands. PowerShell Automation Engineer by day, n00bing around InfoSec by night. Like Lego Bricks, Tools-Tools-Tools, and PowerShell. Like to build things to challenge myself and learn new stuff. Spoke at BSides Amsterdam, PSConfAsia & PSConfEurope. Won the photoshop face-swap contest last year and thus needed to find another way to come to Derby this year.Really would love to get Iced... so made a really cool tool.

@SadProcessor

Back to Derbycon 2018 video list

Printable version of this article

15 most recent posts on Irongeek.com:


If you would like to republish one of the articles from this site on your webpage or print journal please contact IronGeek.

Copyright 2016, IronGeek
Louisville / Kentuckiana Information Security Enthusiast