Attacking SCCM with SCCMHunter | Garrett Foster @WildWestHackinFest
Attacking SCCM with SCCMHunter | Garrett Foster  @WildWestHackinFest
Uploaded July 2026 | Updated September 2026, 2 weeks ago
Attacking SCCM with SCCMHunter
Presenter: Garrett Foster

How do attackers compromise SCCM environments?

In this session, Garrett Foster breaks down how SCCMHunter can be used to find, enumerate, and exploit SCCM in real-world environments. From discovering infrastructure in Active Directory to extracting credentials and abusing admin APIs, this talk shows how attackers move from access to full compromise.

Whether you’re new to SCCM or already testing it on engagements, you’ll walk away with practical techniques and a deeper understanding of the risk.

#cybersecurity #redteam #activedirectory #infosec #pentesting

///Black Hills Infosec Socials
Twitter: twitter.com/BHinfoSecurity
Mastodon: https://infosec.exchange/@blackhillsinfosec
LinkedIn: linkedin.com/company/antisyphon-training
Discord: discord.gg/ffzdt3WUDe

///Black Hills Infosec Shirts & Hoodies
spearphish-general-store.myshopify.com/collections/bhis-shirt-collections

///Black Hills Infosec Services
Active SOC: blackhillsinfosec.com/services/active-soc
Penetration Testing: blackhillsinfosec.com/services
Incident Response: blackhillsinfosec.com/services/incident-response

///Backdoors & Breaches - Incident Response Card Game
Backdoors & Breaches: backdoorsandbreaches.com
Play B&B Online: play.backdoorsandbreaches.com

///Antisyphon Training
Pay What You Can: antisyphontraining.com/pay-what-you-can
Live Training: antisyphontraining.com/course-catalog
On Demand Training: antisyphontraining.com/on-demand-course-catalog
Antisyphon Discord: discord.gg/antisyphon
Antisyphon Mastodon: https://infosec.exchange/@Antisy_Training

///Educational Infosec Content
Black Hills Infosec Blogs: blackhillsinfosec.com/blog
Wild West Hackin' Fest YouTube: youtube.com/wildwesthackinfest
Antisyphon Training YouTube: youtube.com/antisyphontraining
Active Countermeasures YouTube: youtube.com/activecountermeasures
Threat Hunter Community Discord: discord.gg/threathunter

Join us at the annual information security conference in Deadwood, SD (in-person and virtually) — Wild West Hackin' Fest: wildwesthackinfest.com
Attacking SCCM with SCCMHunter | Garrett FosterPacket Generation with Scapy | Bill StearnsA Fistful of Headers: Taming the Wild Web at Scale | Cary Hooper and Wesley McElhinnyNot Doomed...Yet | Chloé MessdaghiThe Role of Pentesting and Continuous Validation | Dan DeCloss | WWHF 2023A Post Incident Case Study for SMB Response Teams | Amanda BerlinHacks Hackers Hate  Built In Bins to Bunk BaddiesMind Over Malware: Harnessing Psychology to Fortify Cybersecurity  | Jenn FerrerasWeb Application Authorization: Taming the Perfect Storm | Tim TomesWorkshop: Automating Attacks | Alex Martirosyan | WWHF 2023Tool Shed Demo: ELROND | Ben Smith | WWHF 2023Large Language Models: Disinformation and the Future of Work | Heather  Lawrence | WWHF 2023
Wild West Hackin Fest |

Attacking SCCM with SCCMHunter | Garrett Foster

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER