LAPS, Lateral Movement, and the Password You Forgot About
This one is going to be a little different from the last few posts I have written. Most of my recent articles have been more programming-focused, with demos, code, and simulations. This one comes more from day-to-day operations in my role as an IT Sys Admin. Recently, while working on a domain controller upgrade, I found myself revisiting some of the points from my ransomware article, and it felt like the right time to write a follow-up. Not from theory, but from what we actually see in real environments. Let me paint you a scenario. You’ve got a fairly standard Active Directory environment. Nothing fancy, nothing broken, at least on the surface. Domain controllers are healthy, GPOs are in place, users are doing their thing, endpoints are patched most of the time, and you’ve got EDR running, maybe even something solid. On paper, everything looks right. And to be fair, in many environments, especially across the hospitality sector here in the Maldives, this is exactly the case. Over...