Active Directory : comment mettre en place la délégation de la gestion des GPO ? https://www.it-connect.fr/active-directory-comment-mettre-en-place-la-delegation-de-la-gestion-des-gpo/ #Stratégiedegroupe #ActiveDirectory #GPO

Active Directory : comment mettre en place la délégation de la gestion des GPO ? https://www.it-connect.fr/active-directory-comment-mettre-en-place-la-delegation-de-la-gestion-des-gpo/ #Stratégiedegroupe #ActiveDirectory #GPO
I started a list of tools, useful for pentesters and sysadmins alike, to gain a quick overview of potentially critical vulnerabilities and attack paths within an Active Directory domain.
Exploiting these vulnerabilities might provide pentesters with domain admin privileges rather quickly.
On the other hand, fixing these vulnerabilities is often not that difficult or time-intensive and can massively bolster the security of a domain.
Defending Against Credential-Based Cyberattacks: A Comprehensive Response Guide
Credential-based attacks have become the weapon of choice for cybercriminals, leveraging valid credentials to infiltrate systems undetected. Understanding the mechanics behind these attacks and implem...
Active Directory : le pare-feu est en profil « Public » au démarrage des contrôleurs de domaine, que faire ? https://www.it-connect.fr/active-directory-le-pare-feu-est-en-profil-public-au-demarrage-des-controleurs-de-domaine-que-faire/ #ActiveDirectory #WindowsServer #Astuce
New Open-Source Tool Spotlight
Active Directory Certificate Services (AD CS) can be a goldmine if misconfigured. Tools like Certipy simplify enumeration and abuse, leveraging techniques like Shadow Credentials, Golden Certificates, and domain escalation paths (ESC1-ESC11). #CyberSecurity #RedTeam
Certipy's `shadow` command exemplifies ADCS weaknesses. By manipulating `msDS-KeyCredentialLink`, you can take over accounts via PKINIT. It's seamless but devastating for privilege escalation. #Pentesting #ActiveDirectory
Golden Certificates mimic Golden Tickets but target ADCS. Using a compromised CA private key, an attacker can forge certs for domain controllers or users. Certipy automates this process—caution with CA backups. #InfoSec #PKI
Project link on #GitHub
https://github.com/ly4k/Certipy
#Infosec #Cybersecurity #Software #Technology #News #CTF #Cybersecuritycareer #hacking #redteam #blueteam #purpleteam #tips #opensource #cloudsecurity
— P.S. Found this helpful? Tap Follow for more cybersecurity tips and insights! I share weekly content for professionals and people who want to get into cyber. Happy hacking
Patch Tuesday d’avril 2025 : votre Active Directory est-il prêt pour la validation du PAC ? https://www.it-connect.fr/patch-tuesday-davril-2025-votre-active-directory-est-il-pret-pour-la-validation-du-pac/ #ActiveDirectory #Cybersécurité #Kerberos #Windows
Microsoft's Emergency Windows Updates: A Critical Fix for Active Directory Policies
In a swift response to a significant Active Directory issue, Microsoft has rolled out emergency updates to rectify inconsistencies in local audit logon policies, impacting enterprise security protocol...
Connectivity Crisis: Windows Server 2025 Domain Controllers Face Restart Issues
Microsoft's latest update reveals a critical flaw in Windows Server 2025 that disrupts connectivity for domain controllers after a restart, impacting applications and services. IT admins are urged to ...
The Renaissance of NTLM Relay Attacks: Everything You Need to Know – Source: securityboulevard.com https://ciso2ciso.com/the-renaissance-of-ntlm-relay-attacks-everything-you-need-to-know-source-securityboulevard-com/ #rssfeedpostgeneratorecho #SecurityBloggersNetwork #CyberSecurityNews #SecurityBoulevard #socialengineering #ActiveDirectory #BloodHound #ntlmrelay #research #redteam
Active Directory : 4 outils gratuits et efficaces pour auditer les mots de passe https://www.it-connect.fr/active-directory-4-outils-gratuits-et-efficaces-pour-auditer-les-mots-de-passe/ #ActiveDirectory #Cybersécurité #Motsdepasse
LDAP Tool Box Service Desk 0.6.2 released!
LDAP Tool Box Service Desk is a web application for administrators and support teams. It allows to browse accounts in an LDAP directory, view and update their password and security status.
News on OW2 : https://projects.ow2.org/view/ldaptoolbox/ltb-service-desk-0-6-2-released/
Release on GitHub : https://github.com/ltb-project/service-desk/releases/tag/v0.6.2
Download : https://ltb-project.org/download.html
LDAP Tool Box Self Service Password 1.7.3 released!
LDAP Tool Box Self Service Password is a web application for end users. It allows them to change or reset their password (mail, SMS, questions) if they lost it. It works with any LDAP directory, including Active Directory.
News on OW2 : https://projects.ow2.org/view/ldaptoolbox/ltb-self-service-password-1-7-3-released/
Release on GitHub : https://github.com/ltb-project/self-service-password/releases/tag/v1.7.3
Download : https://ltb-project.org/download.html
MFA pour Windows, RDP et VPN : découvrez Specops Secure Access https://www.it-connect.fr/mfa-pour-windows-rdp-et-vpn-decouvrez-specops-secure-access/ #ActiveDirectory #Cybersécurité #Entreprise #Windows #MFA
Active Directory : comment réparer et restaurer le dossier Sysvol ? https://www.it-connect.fr/active-directory-comment-reparer-et-restaurer-le-dossier-sysvol/ #ActiveDirectory
Active Directory : les fondamentaux du Tiering Model https://www.it-connect.fr/active-directory-tiering-model-les-fondamentaux/ #ActiveDirectory #Cybersécurité
Mastering Active Directory Hygiene: Automating SIDHistory Cleanup with CleanupMonster http://dlvr.it/TJZpmF via PlanetPowerShell #ActiveDirectory #SIDHistory #CyberSecurity #Automation
Is today #FediHire Friday? Sure looks like it!
What I'm looking for: A senior level, individual contributor role supporting Windows, Active Directory, Certificates, PKI, Azure, and information security in a large environment. Interested in relocating outside of the US. I like to solve weird problems and make computers run smoothly. I want to help others use technology effectively.
My main focus the last few years has been rebuilding and modernizing a struggling certificate management team. That includes growing the team to meet our company needs, migrating our AD-integrated private PKI stack, getting a handle on our web PKI consumption, and making massive improvements to our certificate lifecycle management platform. I supported and advised our CyberSec and Desktop teams as we rolled out multi-factor authentication to 50,000 employees and contractors across the US. My background in understanding deep computer fundamentals, talent for quickly grasping nuances of larger systems, and calmness in a crisis have contributed to quickly resolving major technology outages regardless of root cause.
This role hasn't been exclusively technical. A big part of my current job is building relationships with our developers to help them understand how certificates work, the responsible ways to use them, and what our relevant internal policies are. I've been training and teaching junior and mid-level engineers both practical PKI concepts and our specific enterprise requirements. I've gotten to spend some time with upper management to both explain the immediate challenges we've had and the plans we can implement improve our infrastructure, reducing costs and outages.
While this position has been focused on certs and how to use them, I'm very comfortable considering a technical leadership role for Windows (server and desktop) administration and Active Directory. I also have some good experience with Azure and virtualization platforms, but they haven't been my daily focus for several years.
My current employer is direct retail for general public consumers. I've also worked in banking/finance, manufacturing, and architecture firms. The common thread is I love to help people leverage technology for their goals, to help them be more effective.
In my personnel/volunteer time I've done very similar: working backstage with lights/sounds/projections so live performers can do their best.
Right now I'm in Syracuse, New York (about five hours from NYC), but I'm open to relocation/migration anywhere in the world.
PMs open if you want to talk details. Boosts/reshares appreciated.
My cloud identity team, made up of people who have only ever worked in cloud/SaaS IdP setups, has just been made responsible for an Active Directory environment.
Most of them are befuddled or panicking.
Me:
Comment restaurer un contrôleur de domaine Active Directory ? https://www.it-connect.fr/comment-restaurer-un-controleur-de-domaine-active-directory/ #ActiveDirectory
iX-Workshop: Lokales Active Directory gegen Angriffe absichern
Lernen Sie, wie Sie Angriffe auf das Active Directory Ihres Unternehmens sicher erkennen und effektiv verhindern können.