Active Directory Attacks and How to protect against them - TechDays 2008
This session provides examples of attacks against Active Directory and shows how you can protect your enterprise directory against them. The attacks addressed in this presentation include password cracking-, elevation of privilege-, and denial-of-service-based attacks. The session will help you understand some of the inner details of the AD authentication and authorization systems – such as LM hashing and Kerberos pre-authentication, cached credentials, SIDHistory, and token bloat… – and how these can create attack opportunities. Most importantly, this session illustrates the need for organizations to have a rock-solid AD administrative delegation and auditing model and a proven AD disaster recovery plan.
PowerPoint Download