Real-World PingCastle Findings

Table of Contents

#1: Passwords in GPO’s

Original Tweet

#2: Weak Password Policies

Original Tweet

#3: Non-admin Users can add up to 10 Computer(s) to a Domain

Original Tweet)

#4: Dangerous Privileges

Original Tweet

#6: Log Interactively on to the Domain Controllers

Original Tweet

#7: “PASSWD_NOTREQD”

Original Tweet

#8: Interesting Attack Paths

Original Tweet

#8: Non-admin Users can add Computers to a Domain

Original Tweet

#9: Recycle Bin is not enabled

Original Tweet

#10: Enabled Zone Transfers

Original Tweet

#11: Outdated and Vulnerable Operating Systems

Original Tweet

#10: Control Paths Analysis

Original Tweet

#12: Unconstrained Delegations

Original Tweet

#13: Allow log on locally

Original Tweet

#14: Misconfigured Certificate Templates

Original Tweet