Skip to content

dibsy/Recipies-Of-A-Jenkins-Hacker

Repository files navigation

Recipies of a Jenkins Hacker

  • Introduction

    • About Me
    • Why this talk ?
    • Agenda
  • Jenkins Basics

  • Offensive Jenkins

    • Enumeration
    • Pipeline Attacks
    • Credentials Dumping
    • Privilege Escalations
    • Forensics
    • Lateral Movement
    • Backdooring
  • Jenkins Security Automation

    • Build Log Analysis
    • Script Console Automation
  • Q&A

Tool Release

I wrote some quick hacky scripts during my research work which can be found here.

Profits

References

DISCLAIMER

  • DISCLAIMER : NO PUBLIC JENKINS CONTROLLERS WERE EXPLOITED DURING MY RESEARCH
  • USE WITH CAUTION : I WILL NOT BE RESPONSIBLE IF THESE TECHNIQUES ARE MISUSED !