You are here: Resources > What are the risks of the escalation of privileges in the active directory?
What are the risks of the escalation of privileges in the active directory?
People, especially those who are working in a technologically-related setting, should be reminded that allowing an unprotected delegation may greatly affect the security of not just a part of but the whole computer system. As of the present, the risk in the active directory when considering the escalation of privilege has been proven to be increasing in intensity. In addition, it has also been witnessed that the attack surface increases bit by bit. Lastly, the chances that an attack may occur also continue to heighten.
There are certain administrative activities, which when carried out with unlawful purposes in mind, may cause an alarming impact on the security of a specific system. One example of the task is registering a new user account, which will be utilized in performing illegal endeavors against a system. Making use of a newly-registered account will help prevent the security of the system to detect the presence of an infiltrator.
Another way for one to access a system is by resetting the password of another user. This will permit an individual to enter the IT infrastructure without encountering difficulty in the process. Lastly, changing one’s group membership allows an unauthorized person to see through each of the components of the system that has been configured available to a certain group.
Generally speaking, the presence of one delegation grant that is not as well-protected as compared to the others may serve as a VIP pass for vicious criminals. These individuals may easily gain control over the domain account of the admin. Aside from having the possession of the main account, the crooks may also have the power to alter the security policy of the domain and the security group membership.
Active Directory has been considered to be less protected since there are quite a number of individuals who have the power over it and each has the capability to alter security permissions on the OUs, the groups, the accounts, and the other components. Additionally, Active Directory is also deemed poorly secured since the permissions may be inherited even without any interventions.
WPA Password Recovery
Web Vulnerability Scanner
 
Protector UTM Firewall