AnsibleHound: Attack Path Management applied to Ansible | SO-CON 26

AnsibleHound: Attack Path Management applied to Ansible | SO-CON 26

Source: YouTube · SpecterOps · published Jun 4, 2026 · 48:10

Penetration Testing
No ratings yet Log in to rate
Transcript Available
Description

This video features a presentation by penetration testers from Desjardins Group on Ansible security, starting with an introduction of the speakers and their backgrounds 0:00.

Key Takeaways:
• The speakers, Charles-Antoine and Simon, introduce themselves as penetration testers at Desjardins Group, a financial institution in Quebec 0:00.
• The talk is structured into two parts: first, covering Ansible fundamentals for those less familiar with the niche system, and second, proceeding to security topics 0:36.

The presentation aims to educate the audience on Ansible, beginning with basic concepts before diving into specific security considerations.

Sources:

  • 0:00 Introduction of speakers and their professional backgrounds at Desjardins Group.
  • 0:36 Outline of the talk's structure, starting with Ansible fundamentals.

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 1 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Penetration Testing. Commonly maps to: Security Assessment and Testing, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

So, let's get right into it. As you said, we have a bit of a delay. Uh so, first things first, I just want to introduce myself. I've been a penetration tester for a few years now at Desjardins Group, which is a financial institution back in Quebec. Uh I've been a passionate member of the cyber community back at home, and this is also part of that passion. I'll leave the floor to Simon. >> Yeah. Hi, everybody. Thank you for being there. Uh my name is Simon. I am working the same team as Charles-Antoine for Desjardins Group. Uh before that, I was a penetration tester in Canada and in France. >> All right. So, this talk is going to be separated into two main portions. The first one, since Ansible is kind of a more niche system that people are less exposed to, we'll just be going over a few fu…