• 0 Posts
  • 4 Comments
Joined 1 year ago
cake
Cake day: October 19th, 2024

help-circle



  • Here is the thing, does the corporate entity you work with use Microsoft? Then your password is stored as an NTLM hash in NTDS.dit. That means you are using MD4.

    Has anyone in your organization clicked a phishing link? It only takes one weak link to get in. Then it only takes one (Maybe 2) bad configuration for a malicious actor to escalate privileges. Then dump the whole organization passwords from the Domain Controller.

    Hope you aren’t reusing passwords anywhere.