> ## Documentation Index
> Fetch the complete documentation index at: https://docs.specterops.io/llms.txt
> Use this file to discover all available pages before exploring further.

# DPERSIST2 - Trusting Rogue CA Certificates

> Establish domain persistence by installing rogue Certificate Authority certificates into the domain trusted root store.

<Warning>
  DPERSIST2 is not currently supported by Certify, and as such not explained in detail here.
</Warning>

<Info>
  For comprehensive information on DPERSIST2, please refer to [Certified Pre-Owned](https://specterops.io/wp-content/uploads/sites/3/2022/06/Certified_Pre-Owned.pdf).
</Info>

## Overview

DPERSIST2 involves trusting rogue CA certificates to establish domain persistence. This technique allows attackers to maintain access by installing malicious Certificate Authority certificates into the domain's trusted root certificate store.

## Resources

For detailed implementation and methodology, consult the original research:

* [Certified Pre-Owned Research Paper](https://specterops.io/wp-content/uploads/sites/3/2022/06/Certified_Pre-Owned.pdf) by Will Schroeder and Lee Chagolla-Christensen
* SpecterOps blog posts on AD CS security
