#activedirectory — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #activedirectory, aggregated by home.social.
-
I'm Nashville-bound next week for the Hybrid Identity Protection Conference!
Focusing on:
🛡️ Defending AD
🛑 Retiring NTLM
☁️ Securing Entra
(w/ @horse, @ericonidentity, @merill, and others!)Staying ahead of identity threats is how I keep clients secure. Attending? Drop a reply to connect!
#HIPConf #InfoSec #CyberSecurity #ActiveDirectory #EntraID #IdentitySecurity
-
Агрегируем практики по харденингу Active Directory Domain Services
Служба каталогов Active Directory Domain Services, к сожалению, достаточно часто недооценивается бизнесом или ИТ-персоналом с точки зрения её критичности. Она представляет из себя не просто базу данных пользователей - а целый набор информационных систем, компрометация которых даёт злоумышленникам полный контроль над всеми сервисами, интегрированными в доменную среду (файловые и веб-сервера, СУБД, иногда среды управления виртуализацией, резервным копированием, сетевым оборудованием и т.д.), позволяя беспрепятственно эскалировать привилегии и осуществлять горизонтальное перемещение в сети. Именно поэтому сегодня я постараюсь агрегировать в данном материале релевантную информацию касательно харденинга AD DS для нашего профессионального сообщества.
-
iX-Workshop: Windows Server absichern und härten
Lernen Sie, wie Sie Ihren Windows Server effektiv absichern und härten, Schutzmaßnahmen integrieren, Konfigurationen optimieren und Angriffsszenarien bewerten.
#ActiveDirectory #Automatisierung #IT #Security #iXWorkshops #Windows #WindowsServer #news
-
iX-Workshop: Sicheres Active Directory – Adminrechte mit Tiering schützen
Erfahren Sie, wie Sie mit dem Enterprise Access Model eine Rechteausweitung verhindern und so die Active-Directory-Domäne Ihres Unternehmens schützen.
#ActiveDirectory #IdentityManagement #IT #iXWorkshops #Microsoft #Security #news
-
Transcript of the talk "How to provision, install, configure and keep thousands of Debian and Debian-based systems updated" at DebConf26 in Santa Fe
#ActiveDirectory #Ansible #Automation #AWX #DebConf #DebConf26 #Debian #Deploy #DevOps #FreeIPA #GitLab #GNU #IaC #Linux #migrate #Proxmox #SantaFe #talks #Ubuntu #UNL
-
Transcripción de la charla "Cómo aprovisionar, instalar, configurar y mantener actualizados miles de sistemas Debian y basados en Debian" en DebConf26 en Santa Fe
#ActiveDirectory #Ansible #Automation #AWX #DebConf #DebConf26 #Debian #Deploy #DevOps #FreeIPA #GitLab #GNU #IaC #Linux #migrate #Proxmox #SantaFe #talks #Ubuntu #UNL
-
iX-Workshop: Lokales Active Directory gegen Angriffe absichern
Lernen Sie, wie Angreifer Active Directory kompromittieren und wie Sie Ihre AD-Umgebung effektiv vor Ransomware und anderen Cyberangriffen schützen.
#ActiveDirectory #IdentityManagement #IT #iXWorkshops #Microsoft #Ransomware #Security #news
-
🕵️ Who is running your #PowerShell code—and what are they actually allowed to do?
@[email protected] explores tokens, claims, privileges, remoting, and authorization context in this deep dive into PowerShell security.
👉 youtu.be/vFlTHpPzktA?si=KcT...
#CyberSecurity #PSConfEU #ActiveDirectory
- YouTube -
«Эллес» и Global Catalog. Как вычерпать наполняющийся бассейн
Привет, Хабр! Меня зовут Динар, я один из разработчиков службы каталогов «Эллес» в ГК «Иннотех». Кратко о продукте «Эллес», откуда он взялся и что из себя представляет, писал мой коллега. Подробное описание и документацию можете найти на
https://habr.com/ru/companies/T1Holding/articles/1066912/
#эллес #samba #activedirectory #служба_каталогов #global_catalog
-
Just published my comprehensive guide on AS-REP Roasting — a stealthy Kerberos attack that exploits disabled pre-authentication in Active Directory to crack passwords offline.
https://denizhalil.com/2026/08/03/as-rep-roasting-attack-guide/
-
#Microsoft: Proof-of-Concept-Exploit für „#Certighost“-AD-Lücke aufgetaucht | Security https://www.heise.de/news/Microsoft-warnt-vor-Proof-of-Concept-Exploit-fuer-Certighost-AD-Luecke-11379962.html #PoC #exploit #Patchday #ActiveDirectory
-
iX-Workshop: Active Directory Hardening – Vom Audit zur sicheren Umgebung
Lernen in einer Übungsumgebung: Sicherheitsrisiken in der Windows-Active-Directory-Infrastruktur erkennen und beheben, um die IT vor Cyberangriffen zu schützen.
#ActiveDirectory #IdentityManagement #IT #iXWorkshops #Microsoft #Security #news
-
Microsoft Tier Model : le retour en grâce du on-premises ? https://www.it-connect.fr/microsoft-tier-model-le-retour-en-grace-du-on-premises/ #Sécurité&DurcissementAD #ActiveDirectory #Cybersécurité
-
Certighost (CVE-2026-54121) : un compte AD standard suffit pour usurper un contrôleur de domaine https://www.it-connect.fr/certighost-cve-2026-54121-ad-cs-controleur-de-domaine/ #ActuCybersécurité #ActiveDirectory #Cybersécurité #Vulnérabilité #Microsoft
-
iX-Workshop: Windows Server absichern und härten
Lernen Sie, wie Sie Ihren Windows Server effektiv absichern und härten, Schutzmaßnahmen integrieren, Konfigurationen optimieren und Angriffsszenarien bewerten.
#ActiveDirectory #Automatisierung #IT #Security #iXWorkshops #Windows #WindowsServer #news
-
iX-Workshop: Lokales Active Directory gegen Angriffe absichern
Lernen Sie, wie Angreifer Active Directory kompromittieren und wie Sie Ihre AD-Umgebung effektiv vor Ransomware und anderen Cyberangriffen schützen.
#ActiveDirectory #IdentityManagement #IT #iXWorkshops #Microsoft #Ransomware #Security #news
-
iX-Workshop: Sicheres Active Directory – Adminrechte mit Tiering schützen
Erfahren Sie, wie Sie mit dem Enterprise Access Model eine Rechteausweitung verhindern und so die Active-Directory-Domäne Ihres Unternehmens schützen.
#ActiveDirectory #IdentityManagement #IT #iXWorkshops #Microsoft #Security #news
-
Stop handing out Domain Admin like candy. One compromised helpdesk account = full AD takeover and ransomware. The Tiered Admin model stops credential dumping cold. #Cybersecurity #ActiveDirectory #SysAdmin
-
Faux candidats, deepfakes et télétravail : faut-il repenser l’onboarding IT ? https://www.it-connect.fr/repenser-onboarding-it-specops-secure-onboarding/ #ActiveDirectory #Cybersécurité #Motsdepasse
-
I like a fresh lab. I do not like building one for the umpteenth time, especially when the build takes longer than the thing I actually wanted to test.
build-lab is the final piece in a three-script set, and the one that ties the other two together. One command, an ISO, and roughly half an hour later you have a Windows Server 2025 domain controller. Log on once and the domain populates itself with a directory that looks lived in, nested groups and GPOs and an Enterprise CA included. No GUI, no answer file to hand-edit, no clicking Next.
This is an orchestrator. It calls New-VMwareWorkstationVM to build and start the VM, pushes the new-AdDomain payload into the guest over vmrun, and kicks off the promotion. Still PowerShell 5.1, still nothing outside what Microsoft and VMware already ship.
One thing is deliberately manual. Directory population runs from a scheduled task that fires at your first Administrator logon, so you do have to log into the console once. I could automate it by storing a domain Administrator password under a startup-triggered task. That's the one compromise I decided not to make, even in a lab, and I'm still not certain it was the right call.
The interesting problem was verification. A successful AD promotion reboots Windows immediately, which tears down the vmrun guest-operations channel mid-call. A blocking call hung on that reboot and never came back. So the guest script gets launched fire-and-forget, which means there is no exit code to read. Just silence.
Instead, build-lab confirms success by polling for ntds.dit in the guest, and pulls the guest's deployment logs back to the host either way, because the run you need logs from is the one that failed.
https://github.com/0x44616e69656c/build-lab
What's the step in your lab build that you've rebuilt by hand so many times you've stopped noticing it?
#PowerShell #ActiveDirectory #WindowsServer #Automation #HomeLab #VMware #InfoSec
-
#TechnicalTalk
Adversary Village at @defcon 34!
Nikos Vourdas, Senior Offensive Security Consultant at EY, takes the stage with “Yet Another Walking Dead of Active Directory” on 7 Aug 2026 at @defcon Creator Stage 3.
Adversary Village schedule:
https://adversaryvillage.org/adversary-events/DEFCON-34/
More info on the session: https://adversaryvillage.org/adversary-events/DEFCON-34/Nikos-Vourdas
#AdversaryVillage #DEFCON34
#TechnicalTalk #ActiveDirectory #OffensiveSecurity #OffensiveTradecraft
#RedTeam #AdversaryTactics -
🎊 LTB Service Desk 0.9 released!
ℹ️ LDAP Tool Box Service Desk is a web application for administrators and support teams. It allows to browse and manage (create/modify/delete) accounts in an LDAP directory, manage group membership, view and update their password and security status.
🆕 Main changes: authentication system, group membership, account creation branch, new design
🔗 https://projects.ow2.org/view/ldaptoolbox/ltb-service-desk-0-9-released/
@ow2 @worteks_com
#LDAP #LTB #OpenLDAP #ActiveDirectory #IAM #IGA #PHP #LDAPToolBox
-
iX-Workshop: Windows Server absichern und härten
Lernen Sie, wie Sie Ihren Windows Server effektiv absichern und härten, Schutzmaßnahmen integrieren, Konfigurationen optimieren und Angriffsszenarien bewerten.
#ActiveDirectory #Automatisierung #IT #Security #iXWorkshops #Windows #WindowsServer #news
-
Des pirates utilisent un script PowerShell généré par IA contre l’Active Directory https://www.it-connect.fr/cyberattaque-2026-script-powershell-ia-enumeration-active-directory/ #ActuCybersécurité #ActiveDirectory #Cybersécurité #IA
-
iX-Workshop: Active Directory Hardening – Vom Audit zur sicheren Umgebung
Lernen in einer Übungsumgebung: Sicherheitsrisiken in der Windows-Active-Directory-Infrastruktur erkennen und beheben, um die IT vor Cyberangriffen zu schützen.
#ActiveDirectory #IdentityManagement #IT #iXWorkshops #Microsoft #Security #news
-
Sécurité Active Directory : auditer les délégations LAPS et détecter les failles ACL https://www.it-connect.fr/audit-laps-delegation-active-directory/ #Sécurité&DurcissementAD #ActiveDirectory #Cybersécurité #Microsoft #LAPS
-
iX-Workshop: Lokales Active Directory gegen Angriffe absichern
Lernen Sie, wie Angreifer Active Directory kompromittieren und wie Sie Ihre AD-Umgebung effektiv vor Ransomware und anderen Cyberangriffen schützen.
#ActiveDirectory #IdentityManagement #IT #iXWorkshops #Microsoft #Ransomware #Security #news
-
Active Directory Pentest Mindmap: Complete Attack Path 🧠
🔥 Telegram: t.me/hackinarticles
The AD Pentest Mindmap is a visual roadmap that helps attackers and defenders understand the full attack lifecycle, from enumeration to domain dominance, in a structured way.
📖 Resource: https://github.com/Ignitetechnologies/Mindmap/tree/main/AD%20Pentest
#ActiveDirectory #RedTeam #Pentesting #CyberSecurity #EthicalHacking #OSCP #InfoSec