I wonder how many people are going to run into issues on October 10th related to CVE-2022-37967 and patch #KB5020805
That's when the KrbtgtFullPacSignature Audit gets removed and the setting locks to Enforced.
https://ioc.exchange/@miketheitguy/109337062909975918
#CVE #Windows #WindowsServer #Infotech #InfoSec #SysAdmin #Kerberos #ActiveDirectory
#kb5020805 #CVE #windows #windowsserver #InfoTech #infosec #sysadmin #kerberos #activedirectory
Habe #Fefe gemailt und angeregt, dass er und alle anderen nicht immer nur auf #Microsoft schimpfen sollten sondern halt auch Mal Softwareempfehlungen und Tutorials mit Alternativen zu #ActiveDirectory & co liefern sollte. Hat ihn wohl ziemlich aufgeregt, das Feedback.
#activedirectory #Microsoft #fefe
Demoted a #DomainController in a secondary domain, but lots of clients were still using it as their primary DNS. Had to reinstall DNS and transfer the DNS zone, then create a CNAME for those still using the old DC name. Need to be more aggressive with the DNS logs next time. #ActiveDirectory
#domaincontroller #activedirectory
Plus de sécurité et de productivité avec une solution de réinitialisation des mots de passe en libre-service https://www.it-connect.fr/avantages-solution-de-reinitialisation-des-mots-de-passe-en-libre-service/ #SécuritéInformatique #ActiveDirectory #Microsoft365 #Motsdepasse #Specops
#securiteinformatique #activedirectory #microsoft365 #motsdepasse #specops
Für uns Windows Admins ist die PowerShell besonders praktisch, wenn wir damit die Verwaltung unseres AD automatisieren können.
Auf dem PowerShell Saturday in Hannover zeigt uns @cj_berlin "Arbeiten mit Active Directory jenseits von Get-ADUser -Filter *".
Sei dabei und melde dich an unter:
#powershell #windows #sysadmin #hannover #activedirectory
SecurityOnline: BloodHound v5.0.7 releases: Active Directory Toolkit https://securityonline.info/bloodhound-active-directory-toolkit/ #PostExploitation #activedirectory #BloodHound
#postexploitation #activedirectory #bloodhound
Chef fragt mich, ob ich Kontakte habe, die sich im #IAM-Umfeld auskennen, speziell #ActiveDirectory (denn wir haben offene Stellen).
🤔 Ich glaube aber, ich kenne (fast nur) Webentwickler:innen.
@poki @taber Sadly I'm one of the guys that creates the policy links that enforce all those endpoint guy tasks.
Sometimes, because I haven't seen a good horror movie lately, I look inside to see what they do.
"Create a scheduled task to run a .bat file which calls a .vbs which copies a .zip to a local drive and extracts another .vbs which starts copying
Yeah just mash the power button, most of that group policy shit isn't doing anything important.
#ux #grouppolicy #activedirectory
Creazione di una laboratorio AD su Microsoft Azure – parte 3
Terza ed ultima parte della creazione del nostro #laboratorio di #pentesting su #ActiveDirectory nel #Cloud di #Azure .
#redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #infosecurity
https://www.redhotcyber.com/post/creazione-di-una-laboratorio-ad-su-microsoft-azure-parte-3/
#laboratorio #pentesting #activedirectory #cloud #azure #redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #infosecurity
Learned the hard lesson that Format-Table is intended for a simple display on the screen. I was generating #ActiveDirectory and #DomainController HTML reports, but the FT was not allowing ConvertTo-HTML to work. I was relying on FT to see my data every step of the way, but now I know when and when NOT to use Format-Table. #Powershell
#activedirectory #domaincontroller #powershell
In my current project(spring boot, java 17) i have to secure a rest-api so that only members of a certain active directory can use the endpoints. I have not used spring security or active directory / ldap before. We should i start my research? Are there any good tutorials on this? #java #spring #springboot #springsecurity #ldap #activedirectory
#java #spring #SpringBoot #springsecurity #ldap #activedirectory
SecurityOnline: BloodHound: Active Directory Toolkit https://securityonline.info/bloodhound-active-directory-toolkit/ #PostExploitation #activedirectory #BloodHound
#postexploitation #activedirectory #bloodhound
Why do systems continually confuse mail and upn attributes?
I had this same issue at my last job and just spent 4 hours assisting a SAML issue because the system says email but it's really UPN.
My tombstone will read "Here lies Phil Gastwirth, he died explaining how UPN and Mail attributes are different"
Anbox and OpenLDAP to Active Directory for SSO #activedirectory #openldap #anbox
#activedirectory #openldap #anbox
SecurityOnline: AD ACL Scanner v7.8 releases: create reports of DACLs and SACLs in Active Directory https://securityonline.info/ad-acl-scanner/ #systemaccesscontrollists #accesscontrollists #activedirectory #Forensics #Defense
#systemaccesscontrollists #accesscontrollists #activedirectory #forensics #defense
#Kerberos clients allow IPv4 and IPv6 address hostnames in Service Principal Names (SPNs)
Beginning with Windows 10 version 1507 and Windows Server 2016, Kerberos clients can be configured to support IPv4 and IPv6 hostnames in SPNs.
https://learn.microsoft.com/en-us/windows-server/security/kerberos/configuring-kerberos-over-ip
#kerberos #spn #activedirectory #windowsserver #sysadmin
Una vulnerabilità in Microsoft Azure Active Directory potrebbe consentire l’abuso del Cross-Tenant Synchronization (CTS)
È stata scoperta una nuova #vulnerabilità nel prodotto #Microsoft #Azure #ActiveDirectory. .
#redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #infosecurity
#vulnerabilità #microsoft #azure #activedirectory #redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #infosecurity
Una vulnerabilità in Microsoft Azure Active Directory potrebbe consentire l’abuso del Cross-Tenant Synchronization (CTS)
È stata scoperta una nuova #vulnerabilità nel prodotto #Microsoft #Azure #ActiveDirectory. .
#redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #cybersecurityawareness #cybersecuritytraining #cybersecuritynews #infosecurity
#vulnerabilità #microsoft #azure #activedirectory #redhotcyber #online #it #web #ai #hacking #privacy #cybersecurity #cybercrime #intelligence #intelligenzaartificiale #informationsecurity #ethicalhacking #dataprotection #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #infosecurity
BloodHound CE released!
Works with Docker and faster than before. Very easy to setup!
Powershell: (curl https://github.com/SpecterOps/BloodHound/raw/main/examples/docker-compose/docker-compose.yml).content | docker compose -f - up
Password for login will be created on startup and is inside of the containers log.
#bloodhound #security #activedirectory #microsoft
📚 Great presentation about the evolution of a typical #ActiveDirectory environment over 20 years. Topics include hybrid configurations, security boundaries, and securing complex environments. 🔒 Emphasizes proactive security, administrative isolation, and continuous monitoring. 💻 Relevant for IT admins dealing with #security and #identitymanagement. 👥 https://youtu.be/xDyOQfXNXSA
#activedirectory #security #identitymanagement