Exploiting SMB Message signing not required in a Windows Domain

Описание к видео Exploiting SMB Message signing not required in a Windows Domain

In a classical Windows environment, I usually will start with NetBIOS LLMNR poisoning just to verify SMB security policies. While this can easily be securely configured, it is most time overlooked. Enabling message signinig on SMB and not enforcing it is as bad as not enabling it. Also, SMB version 1 should not be used.

Комментарии

Информация по комментариям в разработке