

Episode 5: Common High Risk Findings on Internal Penetration Tests & How to Mitigate Them
Aug 31, 2022
Internal penetration tests reveal shocking yet common high-risk vulnerabilities like weak passwords and misconfigurations. The discussion dives into the dangers of storing passwords in plain text and the need for better security education. Revamping password policies and embracing random generation is advocated. Common vulnerabilities in Active Directory configurations are unveiled, specifically regarding privilege escalation. Legacy systems pose significant risks with relay attacks, highlighting the urgency for improved practices in the cybersecurity landscape.
Chapters
Transcript
Episode notes
1 2 3 4 5 6
Intro
00:00 • 2min
Risks of Storing Passwords in Plain Text Across File Shares
02:06 • 2min
Rethinking Password Security
04:12 • 6min
Uncovering Active Directory Vulnerabilities
10:21 • 10min
Legacy System Vulnerabilities and Relay Attacks
20:50 • 2min
Navigating IT Security Challenges
23:07 • 8min