Heads up, #ActiveDirectory#sysadmin's. This free utility evaluates your AD against 59 different IoEs, orders them by severity, and maps them to the MITRE ATT&CK framework. @MrADFS
A topic near and dear to my heart--I hope to summarize my 4 years of digging into #grouppolicy from an #infosec perspective, and talk about what you can do to defend against it.
We have been seeing reinfections, this is a good explanation why and how. Assume your AD been compromised and backdoors been created, make sure you look for them
"The need for security practitioners to fight global cybercrime and its unspeakable evils has never been greater," @ber_mic, CEO @SemperisTech
𝙏𝙊𝙉𝙄𝙂𝙃𝙏: We're at #IDR2020 to hear about #IdentityResilience strategies for individual protection across enterprise environments.
Did you celebrate #TechnologyDay? As we recognized the advancements of today, protecting digital assets remains a top priority! Check out what our CEO, @ber_mic, had to say about the state of #cybersecurity as #ransomware attacks continue to escalate. https://t.co/MYDHqi9nZt
#grouppolicy security tip--#activedirectory sites can have GPOs linked to them. Many sites contain domain controllers. If site GPO linking delegation is lax, I can do a lot of damage to an AD with the ability to link arbitrary GPOs to a site containing a DC.
Interesting - How the Tech Giants Make Their Billions - Pay attention to you are the product section and where #Google and #facebook gets their revenue - https://t.co/Ei9yDWmAuf -
HIP Conference is coming to Chicago March 13th! Our new HIP Tech Day Series, is a 1-day regional event with exclusive access to industry renowned experts at the Microsoft Technology Center. Registration is free https://t.co/1wb2GB69nV
A highlight from yesterday's @Evanta#CIOSummit New York Conference - our CEO @ber_mic introducing the Keynote speaker, Captain Mark Kelly and hearing @ShuttleCDRKelly's inspiring story!
Looking for feedback from large organizations (>50k users) with non-Windows devices (Mac, Linux, *nix) that have rotated their KRBTGT account password proactively (not a breach scenario) twice, though not necessarily the same day/week.
Please comment/DM me with additional info.