7MS #489: Ping Castle

7MS #489: Ping Castle

Today we're talking about Ping Castle (not a sponsor), an awesome tool for enumerating tons of info out of your Active Directory environment and identifying weaknesses, misconfigurations and paths to escalation! It's wonderful for both red and blue teamers.

Some of Ping Castle's cool features include being able find:

  • Kerberoastable and ASREPRoastable users
  • Plain text passwords lingering in Group Policy Objects
  • Users with never-expiring passwords
  • Non-supported versions of Windows
  • Machines configured with unconstrained delegation
  • Attack and escalation paths to Domain Admins

Populärt inom Politik & nyheter

aftonbladet-krim
motiv
p3-krim
rss-krimstad
rss-viva-fotboll
fordomspodden
flashback-forever
svenska-fall
rss-sanning-konsekvens
aftonbladet-daily
svd-dokumentara-berattelser-2
olyckan-inifran
rss-vad-fan-hande
rss-krimreportrarna
dagens-eko
grans
rss-flodet
rss-frandfors-horna
krimmagasinet
spotlight