Hacks Weekly #1: Group Managed Service Accounts (gMSA) vs. Service Accounts and how to use them.

preview_player
Показать описание
In this CQURE Hacks episode you will learn how to extract passwords from the service accounts and how to implement gMSA (group Managed Service Account) in order to manage the identity of services correctly. Misconfigured service accounts happen in every company, not many companies though even know about how dangerous it can be to keep them misconfigured.

➡️ ABOUT CQURE:
CQURE provides specialized services in IT infrastructure security, business applications, consulting, and advisory services. We are a highly talented Team of Experts who have access to the source code of Windows. Our passion makes us hard workers and our curiosity pushes us to solve difficult problems or to keep trying until we do. Basically, we are always tracking current threats. We proudly use our knowledge to make sure your infrastructure stays tight and secure.

➡️ CONNECT WITH US:
Рекомендации по теме
Комментарии
Автор

I didn't know this feature exist and I always wondered about Srv Accounts vulnerabilities but never investigated further. Thanks!

dieglhix
Автор

As always, Very Informative! Thanks, Paula!

sunilchauhan
Автор

very good tutorial - thank you for sharing!

vsy
Автор

Good article Paula! Where can we find the CQ Secrets Dumper? The link doesn't point to a downloadable file. Thanks.

MOFITECH
Автор

Hi, when you first run regedit, security hive was not expandable so you did not see the secrets but after the gsma, hive was changed. I was missing something ? thank you

zs
Автор

Interesting, I look forward to learning more.

fmkabuvideos
Автор

How many virtual machines do i need to perform this lab

atifhameed
Автор

The KDS root key is not replicated to other domain controlles?

jarves
Автор

When a Powershell script needs admin rights to run how would you designate the service account in the powershell script that requires admin privilage?

InayetHadi
Автор

When trying to dump LSAA og access the data, windows defender will trigger alerts.

DannyNilsson
Автор

Wow! That was neat! Paula, may I ask you to tell more about SPNs in your next video?

EugenNiedaszkowski
Автор

Thanks Paula! How do you define multiple server on the "New-ADServiceAccount statement? do you use comma or semicolons?

pdc
Автор

Hey Paula - All the tools on your sites are being flagged as virus/Malware etc by antivirus .

rahulpradhan
Автор

Not to sound sexist: But it is so much more pleasant watching a beautiful IT Babe!

networkdude