Raphael Mudge talked about how VPN Pivoting gives an attacker an encrypted layer 2 tunnel into their target's network.
This talk discussed the engineering process behind the Covert VPN feature in the Cobalt Strike penetration testing suite. He walked through the problem, requirements for penetration
testers (stealth deployment, self cleanup, something that works, etc.), and the lessons learned while attempting to satisfy these requirements. You'll see live demonstrations, code, and know where to start if you'd like to build your own version of this feature.
Raphael Mudge is the founder of Strategic Cyber LLC, a Veteran-owned business that creates software for red teams. Raphael created Armitage for Metasploit ®, Cortana, and Cobalt Strike. His work made the cover of the Linux Journal, was seen on the Fox sitcom Breaking In, and is used by security professionals all over the world. Raphael speaks and writes on security topics and provides red team support to many Cyber Defense competitions across the country.