Know Your Adversary | The State of APM: Access Graphs & Identity Movement (Ep. 3)

Know Your Adversary | The State of APM: Access Graphs & Identity Movement (Ep. 3)

Source: YouTube · SpecterOps · published Sep 22, 2025 · 26:15

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

Episode three of the Know Your Adversary podcast explores theoretical frameworks for attack path management, specifically contrasting access graphs with attack graphs and introducing the concept of identities at rest versus identities in transit 0:13-0:51.

Key Takeaways:
• The episode focuses on theoretical concepts underlying attack path management to help security professionals shift their defensive perspective 0:17-0:21.
• Understanding the differences between an access graph and an attack graph is crucial, as maintaining both perspectives provides a more complete view of an environment's security posture 0:23-0:30.
• The hosts introduce the paradigm of "identities at rest" versus "identities in transit," a phenomenon discovered during red team operations and attack path assessments 0:32-0:44.

Grasping these paradigms helps defenders better understand adversary behavior and improve their approach to evaluating attack paths.

Sources:

  • 0:13-0:51 Introduction of the episode's two main topics: access vs. attack graphs and identities at rest vs. in transit.
  • 0:17-0:21 Mention of theoretical ideas behind attack path management.
  • 0:23-0:30 Explanation of access graphs versus attack graphs and the importance of both.
  • 0:32-0:44 Origin of the identities at rest vs. identities in transit concept from red teaming.

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

Welcome back to the Know Your Adversary podcast. This is episode three and in this episode we're going to explore some theoretical ideas behind attack path management. Uh specifically two topics. One is this idea of an access graph versus an attack graph. We'll kind of talk about what the differences between those are and why it's important to have both perspectives. And then the second is this idea of identities at rest versus identities in transit. This is idea that we came up with to kind of describe a phenomenon that we've encountered uh in red teams and during uh assessing attack paths in environments and we think it's really important for people to understand this paradigm as they begin to kind of transition their thought process to seeing the world kind of like through the lens of t…