No video

Hacks Weekly #1: Group Managed Service Accounts (gMSA) vs. Service Accounts and how to use them.

  Рет қаралды 36,649

CQURE Academy

CQURE Academy

Күн бұрын

Пікірлер: 31
@dieglhix
@dieglhix 3 жыл бұрын
I didn't know this feature exist and I always wondered about Srv Accounts vulnerabilities but never investigated further. Thanks!
@CQUREAcademy
@CQUREAcademy 3 жыл бұрын
We're happy to help! :)
@mohamedwahieb474
@mohamedwahieb474 Жыл бұрын
Thanks for informative video
@vsy7888
@vsy7888 Жыл бұрын
very good tutorial - thank you for sharing!
@sunilchauhan9794
@sunilchauhan9794 6 жыл бұрын
As always, Very Informative! Thanks, Paula!
@AbreTuMente
@AbreTuMente 2 жыл бұрын
Great video!!! thank you so much!!!
@CQUREAcademy
@CQUREAcademy 2 жыл бұрын
Thank you!
@yanivshalomhelp3579
@yanivshalomhelp3579 Жыл бұрын
Love U. Thanks
@fmkabuvideos
@fmkabuvideos 6 жыл бұрын
Interesting, I look forward to learning more.
@3r1ck87
@3r1ck87 5 жыл бұрын
Thanks, excellent video.
@mohammedmustaqueem8362
@mohammedmustaqueem8362 5 жыл бұрын
Thanks!
@zs2959
@zs2959 2 жыл бұрын
Hi, when you first run regedit, security hive was not expandable so you did not see the secrets but after the gsma, hive was changed. I was missing something ? thank you
@user-le4bi6bm9k
@user-le4bi6bm9k 4 жыл бұрын
内容很棒,相见恨晚
@DannyNilsson
@DannyNilsson 2 жыл бұрын
When trying to dump LSAA og access the data, windows defender will trigger alerts.
@chrisgaming5306
@chrisgaming5306 5 жыл бұрын
OMG, TY TY TY TY. Life saver.
@MOFITECH
@MOFITECH 2 ай бұрын
Good article Paula! Where can we find the CQ Secrets Dumper? The link doesn't point to a downloadable file. Thanks.
@CQUREAcademy
@CQUREAcademy 2 ай бұрын
Hi, thank you for your kind words! We're glad you enjoyed the article. 🦝 You can find the CQ Secrets Dumper on our website: cqureacademy.com/blog/cqsecretsdumper/. In case of any questions let us know!
@osmaster3327
@osmaster3327 6 жыл бұрын
Great. Thank a lot
@jarves1231
@jarves1231 3 жыл бұрын
The KDS root key is not replicated to other domain controlles?
@michalb1389
@michalb1389 3 жыл бұрын
super Paula
@CQUREAcademy
@CQUREAcademy 3 жыл бұрын
Thank you!
@rahulpradhan2568
@rahulpradhan2568 3 жыл бұрын
Hey Paula - All the tools on your sites are being flagged as virus/Malware etc by antivirus .
@CQUREAcademy
@CQUREAcademy 3 жыл бұрын
A lot of our tools publicly available are flagged as malicious by AV engines. It is nothing to worry about, but anyway it is always advisable to run such tools, demo executables or scripts in an isolated test virtual machine. Our things are frequently flagged as malicious, because in our tools while playing with Windows security, we are sometimes performing operations similar to malware. Therefore behaviour pattern of such executables often looks very similar to malware. If you would like to complete the assessment, please whitelist some folder within your virtual machine or completely disable the anti-virus. Also, be sure NOT to use WinZip for our extracting files.
@rahulpradhan2568
@rahulpradhan2568 3 жыл бұрын
@@CQUREAcademy Thanks for the info. Testing it in my lab environment. Appreciate your quick response !!
@InayetHadi
@InayetHadi 5 жыл бұрын
When a Powershell script needs admin rights to run how would you designate the service account in the powershell script that requires admin privilage?
@EugenNiedaszkowski
@EugenNiedaszkowski 7 жыл бұрын
Wow! That was neat! Paula, may I ask you to tell more about SPNs in your next video?
@pdc0302
@pdc0302 3 жыл бұрын
Thanks Paula! How do you define multiple server on the "New-ADServiceAccount -PrincipalsAllowToRetrieveManagedPassword" statement? do you use comma or semicolons?
@CQUREAcademy
@CQUREAcademy 3 жыл бұрын
That's such a great question! The parameter is an array, you can use comma separated values: Set-ADServiceAccount [-Identity] ITFarm1 -PrincipalsAllowedToRetrieveManagedPassword Host1$,Host3$ but best practice is to use group membership Set-ADServiceAccount [-Identity] ITFarm1 -PrincipalsAllowedToRetrieveManagedPassword AD_Group_Name
@pdc0302
@pdc0302 3 жыл бұрын
@@CQUREAcademy Thank you!
@tamilankalaigal2
@tamilankalaigal2 8 ай бұрын
@@CQUREAcademy wat is [-Identity] ITFarm1
@networkdude1332
@networkdude1332 3 жыл бұрын
Not to sound sexist: But it is so much more pleasant watching a beautiful IT Babe!
My Cheetos🍕PIZZA #cooking #shorts
00:43
BANKII
Рет қаралды 28 МЛН
Group Managed Service Accounts : GMSAs
31:53
OneByteAtATime
Рет қаралды 10 М.
43-MANAGED SERVICE ACCOUNT
15:11
Prakash's Windows server tutorial
Рет қаралды 1,7 М.
Trigger Your Services with Managed Service Accounts in AD
9:27
StormWind Studios
Рет қаралды 13 М.
Group Managed Service Accounts in Server 2022
9:24
ShotokuTech
Рет қаралды 3 М.
How to HACK Website Login Pages | Brute Forcing with Hydra
18:21
CertBros
Рет қаралды 1,4 МЛН
Hacks Weekly #7: Sysmon - how to set up, update and use?
21:33
CQURE Academy
Рет қаралды 27 М.