
Hybrid Attacks and Identities in Motion: Anatomy of Modern Attack Paths | SO-CON 26
Source: YouTube · SpecterOps · published Jun 4, 2026 · 42:58
Alachi Meir and Will Schroeder from SpecterOps introduce a framework for understanding "hybrid attacks" and "identities in motion," detailing the anatomy of modern attack paths 0:14-0:17.
Key Takeaways:
• The presentation breaks down foundational security concepts, including authentication, authorization, identity, and the "clean source principle" of trust in transit 0:24-0:32.
• A key theoretical approach involves comparing an "access graph" (intended access) against an "attack graph" (adversary exploitation paths) to find vulnerabilities 0:34-0:38.
• The speakers plan to demonstrate the technical mechanics of hybrid attack paths using a real-world case study of the SolarWinds breach 0:44-0:48.
This talk sets the stage for analyzing complex, cross-environment threat actor behaviors by mapping the intersection of identity and network trust.
Sources:
- 0:00-0:10 Speaker introductions: Alachi Meir and Will Schroeder (harmjoy) from SpecterOps
- 0:14-0:17 Topic introduction: Hybrid attacks and identities in motion
- 0:24-0:32 Foundational theory: AuthN, AuthZ, identities, trust, and clean source principle
- 0:34-0:38 Comparing access graphs versus attack graphs
- 0:44-0:48 Case study and Open Graph mention: SolarWinds breach mechanics
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 0.5 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
All right, so my name is Alachi Meir and I'm the VP of research here at SpecterOps. >> My name is Will Schroeder. My handle is harmjoy for those that have met before and then I I'm a researcher under Alachi. >> Yeah, so we're going to talk about hybrid attacks and identities in motion, the anatomy of modern attack paths. We'll start with a bit of theory, go over some foundational concepts such as authentication, authorization, identities and trust and in transit, the clean source principle. We'll compare the access graph and attack graph and then we'll get a bit more practical with the technical mechanics of what makes hybrid path. We'll do a case study of the SolarWinds breach from last year and then we'll also see how you can use open graph in your attack path management practice. That's…