组策略首选项滥用详解
semperis.com | 漏洞 | #active-directory | #vulnerability | #credential-exposure | #group-policy-preferences | #cpassword | #sysvol
摘要
组策略首选项曾以极易还原的 cpassword 加密在 SYSVOL 中存储本地账户密码,为攻击者大开方便之门。文章详解其滥用方式,以及 DSP 如何检测这类暴露的凭据隐患。
- 发布时间
- 收录时间
Skip to content