Protection from Kerberos Golden Ticket – CERT-EU

By Andrei Ungureanu - Last updated: Tuesday, July 8, 2014 - Save & Share - 2 Comments

Via CatalinB am primit si un document legat de Kerberos PtH publicat de CERT-EU

http://cert.europa.eu/static/WhitePapers/CERT-EU-SWP_14_07_PassTheGolden_Ticket_v1_1.pdf

Merita sa aruncati un ochi si sa fiti constienti ca astfel de atacuri sunt posibile acum (prin mimikatz).

Mai jos sunt alte doua link-uri luate din document ce mi se par foarte utile:

http://blogs.technet.com/b/security/archive/2012/12/06/new-guidance-to-mitigate-determined-adversaries-favorite-attack-pass-the-hash.aspx

http://technet.microsoft.com/en-us/library/bb727066.aspx#ECAA

PS: Sunt curios daca in afara de mine s-a mai confruntat cineva cu nevoia de a urma procedura de Recover from Active Directory Attacks. Anyone?

Posted in Security • Tags: , Top Of Page

2 Responses to “Protection from Kerberos Golden Ticket – CERT-EU”

Comment from Dan
Time July 8, 2014 at 3:46 pm

…si a mers procedura de Recovery…cum spui ei?..

Comment from admin
Time July 9, 2014 at 12:41 pm

Depinde ce intelegi prin “a mers” 😉

Write a comment