

Episode 123: Insecure Active Directory Protocols
Feb 7, 2025
Dive into the world of insecure Active Directory protocols and discover how they can be exploited by attackers for privilege escalation and lateral movement. Learn about essential tools like Pincastle and Purple Knight for identifying security issues. Explore the risks of legacy protocols such as LMNR and NBNS, including potential attacks. Understand the evolving challenges in internal penetration testing and the vulnerabilities of the Windows web client service, emphasizing the importance of updating security practices.
Chapters
Transcript
Episode notes
1 2 3 4 5
Intro
00:00 • 4min
Comparative Analysis of Penetration Testing Tools
03:45 • 2min
Understanding the Security Risks of Legacy Active Directory Protocols
05:59 • 4min
Evolving Challenges in Internal Penetration Testing
09:38 • 10min
Exploring Web Client Vulnerabilities in Windows
19:37 • 20min