動作
專案資訊 #1071
已結束專案資訊 #1064: 2025-PenTest
Sensitive Data Stored in Domain Controller’s Network Shares
狀態:
Closed-關閉
優先權:
Normal
被分派者:
周益利
分類:
-
開始日期:
2025-08-01
完成日期:
2025-12-31
完成百分比:
100%
預估工時:
概述
bookmark20250527015003600759977664 "Sensitive Data Stored in Domain Controller’s Network Shares
" "Storing sensitive data in a Domain Controller’s network shares increases the risk of credential theft and privilege escalation, as attackers who compromise the DC can access critical files, leading to lateral movement or full domain compromise. Additionally, misconfigured share permissions may expose sensitive data to unauthorized users, violating compliance and enabling data breaches.
" "Remove sensitive data from DC network shares if it’s not required for operational purposes.
Restrict access to DC network shares to the principle of least privilege. "
動作