『ADの横展開(ラテラルムーブメント)の技術』〜なぜドメイン管理者は気づかぬうちに陥落するのか〜
https://qiita.com/suzukengo/items/a1341ae41bd79cd9d95d?utm_campaign=popular_items&utm_medium=feed&utm_source=popular_items

#qiita #Security #ActiveDirectory #ハッキング #HackTheBox #生成AI

『ADの横展開(ラテラルムーブメント)の技術』〜なぜドメイン管理者は気づかぬうちに陥落するのか〜 - Qiita

要旨 Active Directory(AD)は企業ネットワークの中核として、認証・認可・リソース管理を一手に担います。その重要性ゆえに、ADは攻撃者にとって最も魅力的な標的でもあります。Verizon DBIRの2025年版によれば、侵害の74%が認証情報の窃取を伴っ...

Qiita

New in CopyRight2: Migrate DPAPI for Computer Migration and Profile Migration jobs.

The feature helps preserve access to browser-stored passwords, saved RDP credentials, user certificate private keys, and other DPAPI-protected data after first logon.

Read: https://www.sys-manage.com/Blog/migrate-dpapi-protected-data

#DPAPI #ActiveDirectory #ProfileMigration #WindowsMigration

How to Migrate DPAPI-Protected Data During Windows Profile Migration

CopyRight2's Migrate DPAPI option helps preserve access to Windows DPAPI-protected data during the execution of Computer and Profile Migration jobs. At first logon, the feature requests the...

Sys-Manage

New in CopyRight2: Migrate DPAPI for Computer Migration and Profile Migration jobs.

The feature helps preserve access to browser-stored passwords, saved RDP credentials, user certificate private keys, and other DPAPI-protected data after first logon.

Read: https://www.sys-manage.com/Blog/migrate-dpapi-protected-data

#DPAPI #ActiveDirectory #ProfileMigration #WindowsMigration

How to Migrate DPAPI-Protected Data During Windows Profile Migration

CopyRight2's Migrate DPAPI option helps preserve access to Windows DPAPI-protected data during the execution of Computer and Profile Migration jobs. At first logon, the feature requests the...

Sys-Manage

iX-Workshop: Sicheres Active Directory – Adminrechte mit Tiering schützen

Erfahren Sie, wie Sie mit dem Enterprise Access Model eine Rechteausweitung verhindern und so die Active-Directory-Domäne Ihres Unternehmens schützen.

https://www.heise.de/news/iX-Workshop-Sicheres-Active-Directory-Adminrechte-mit-Tiering-schuetzen-11308069.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon

#ActiveDirectory #IdentityManagement #IT #iXWorkshops #Microsoft #Security #news

iX-Workshop: Sicheres Active Directory – Adminrechte mit Tiering schützen

Erfahren Sie, wie Sie mit dem Enterprise Access Model eine Rechteausweitung verhindern und so die Active-Directory-Domäne Ihres Unternehmens schützen.

heise online

Как я инфру в буткемпе на Standoff365 проходил [Infra 1] — [Infra 12]

Изначально хотел написать каждый пост для отдельного задания в инфре, но некоторые задания настолько короткие, что писать там даже особо нечего, тем более подсказки в буткемпе очень сильно облегчают решение. Начнем с первой инфры.

https://habr.com/ru/articles/1043364/

#standoff_365 #ctf #infrastructure #windows #activedirectory #kerberoasting #impacket #hash #c2 #adaptix

Как я инфру в буткемпе на Standoff365 проходил [Infra 1] — [Infra 12]

Изначально хотел написать каждый пост для отдельного задания в инфре, но некоторые задания настолько короткие, что писать там даже особо нечего, тем более подсказки в буткемпе очень сильно облегчают...

Хабр

🚨 NTLM is on its way out. Attackers are still abusing it today.

Pass-the-Hash and NTLM relay attacks remain major Active Directory risks.

👉 https://7asecurity.com/blog/2026/05/ntlm-hash-security-kerberos-migration/

#CyberSecurity #ActiveDirectory #Kerberos

The 2026 Guide to NTLM Hash Security and Kerberos Migration

Attackers love the NTLM hash because it’s easy to relay. See how hackers move through your network without passwords and how our experts find the gaps.

7ASecurity Blog

🚨 NTLM is on its way out. Attackers are still abusing it today.

Pass-the-Hash and NTLM relay attacks remain major Active Directory risks.

👉 https://7asecurity.com/blog/2026/05/ntlm-hash-security-kerberos-migration/

#CyberSecurity #ActiveDirectory #Kerberos

The 2026 Guide to NTLM Hash Security and Kerberos Migration

Attackers love the NTLM hash because it’s easy to relay. See how hackers move through your network without passwords and how our experts find the gaps.

7ASecurity Blog

#gevibeopt

🐧 Ubuntu Fileserver in eine Windows-Domäne integriert — und es war satisfying! 🚀

Was wir gebaut haben:
▫️ Domänenbeitritt via realmd/SSSD zu Active Directory
▫️ mergerfs-Pool: 374 GB NVMe + 18 TB HDD = ~18,5 TB vereinter Storage
▫️ Samba als Domain Member mit winbind ID-Mapping
▫️ ACL-Support für Windows-kompatible Berechtigungen
▫️ AD-Gruppen steuern den Zugriff auf Freigaben

Das Besondere: mergerfs lässt jede Platte einzeln ansprechbar. Bei Plattenausfall sind nur die Daten darauf weg — kein RAID-Overhead, dafür TSM-Backup pro Platte. Perfekt für Cold Data.

Samba läuft mit acl_xattr, NTFS-ACLs werden als xattr auf ext4 gespeichert. Windows-Clients verbinden sich nahtlos mit Domänen-Credentials.

Der i5-12400 langweilt sich dabei mit 90% Idle. 📉

Tech-Stack: Ubuntu 26.04, realmd, SSSD, Samba, winbind, mergerfs, ext4

#Linux #Samba #ActiveDirectory #FileServer #mergerfs #SysAdmin #OpenSource

thanks n credits to: #qwen36plus

=)

New blog: RC4 Disabled Since April Patches: Temporary RC4 Allowance for NT Hash Migration. For AD migration teams handling NT hash migration, this explains when a temporary RC4 allowance may be needed and what to consider before users are affected. https://www.sys-manage.com/Blog/temporary-rc4-allowance-nt-hash-migration #ActiveDirectory #WindowsServer #ITMigration