LSA Whisperer: The Cloud Update | SO-CON 2025

LSA Whisperer: The Cloud Update | SO-CON 2025

Source: YouTube · SpecterOps · published May 6, 2025 · 51:57

Cloud Security
No ratings yet Log in to rate
Transcript Available
Description

The speaker introduces a presentation resulting from a three-month research sprint, noting that the specific topics were determined by their accomplishments during that period 0:13.

Key Takeaways:
• The talk's vague description was intentional, as the content was shaped by the outcomes of a recent intensive research sprint 0:10.
• The speaker references a previous presentation on "LSA Whisperer," a tool designed to extract credentials from LSASS memory without direct access 0:38.

The presentation aims to share the results of this focused research effort with the audience.

Sources:

  • 0:13 Explanation of the research sprint context
  • 0:38 Reference to previous work on LSA Whisperer

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 1 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cloud Security. Commonly maps to: Security Architecture and Engineering, Communication and Network Security. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

[Music] Cool. So, I'm glad you're here. Uh, I know the talk description was uh it gave a little bit away. It was a little bit vague. Part of that was because we did a three months threemonth research sprint right before this. Uh, we put a bunch of topics up. We're like, "Hey, we're going to see how much we can get done." Um, and then whatever we uh accomplished ended up in this presentation. So, that's why we're a little vague at the start. Um, but I think we put together a pretty fun presentation. I'm glad you're here. I think you're gonna have a good time. So, what you're going to see, uh, so sorry, first about me. Last year, I gave a talk on a tool called LSA Whisperer. It was a tool that allowed you to get largely credentials from Elsass without touching LSAs memory. Um, as well as som…