SCCM: The tree that always bears bad fruits

Mehdi Elyassa

DEF CON 33 · Day 1 · Main Stage

Microsoft Configuration Manager — still widely known in the industry as SCCM (System Center Configuration Manager) — is one of the most privileged and most abused systems in enterprise Windows environ

AI review

New CVEs in SCCM's web stack plus novel persistence techniques that survive incident response — this is critical enterprise red team research that every Windows defender needs to internalize immediately.

Watch on YouTube