Active Directory Hacking: MidGarden2 (Part 5) - Hack Smarter Labs

Active Directory Hacking: MidGarden2 (Part 5) - Hack Smarter Labs

Source: YouTube · Tyler Ramsbey - Hack Smarter · published Mar 3, 2026 · 16:55

Penetration Testing
No ratings yet Log in to rate
Transcript Available
Description

BLUF: This video continues the exploitation of the Midgard2 lab, focusing on fully abusing the BadSubordinates vulnerability to achieve domain admin access 0:00.

Key Takeaways:
• The creator is working on part five of the Midgard2 lab series, aiming to fully abuse BadSubordinates to become domain admin 0:06.
• Previous steps successfully identified and technically exploited the BadSubordinates vulnerability, but full authentication and abuse were not yet complete 0:13.
• The video is recorded live, offering real-time commentary and interaction with the audience during the exploitation process 0:31.

This installment demonstrates the iterative nature of penetration testing, where initial vulnerability identification is just the first step toward full system compromise.

Sources:

  • 0:00 Introduction to the video and lab series
  • 0:06 Context on the Midgard2 lab and current progress
  • 0:13 Status of the BadSubordinates exploitation
  • 0:31 Explanation of the live streaming format

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Penetration Testing. Commonly maps to: Security Assessment and Testing, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

What is up, everyone? Welcome back to another video. This is part five, believe it or not, of going through the Midgard and two lab on the Hack Smarter platform. Now, this may be the last one, I have no idea. We have successfully identified that it is vulnerable to Bad Successor. We technically exploited Bad Successor. The question is, how many parts will it take me to figure out how to actually authenticate and figure out how to fully abuse Bad Successor to become the domain admin. So, that's what we're going to try in today's video. And you may also notice that as I'm chatting, there is chat on the window. I make these videos as I am live streaming, and I live stream all the time. So, if you've never joined me for a live stream, if you've never been in the live studio audience, you are m…