Date of Publication

2022

Document Type

Master's Thesis

Degree Name

Master in Information Security

Subject Categories

Information Security

College

College of Computer Studies

Department/Unit

Computer Technology

Thesis Advisor

Gregory Cu

Defense Panel Chair

Marnel S. Peradilla

Defense Panel Member

Fritz Kevin S. Flores
Richmond Ivann C. Liclican

Abstract/Summary

Active Directory Directory Services (AD DS) is commonly used by small and large organizations today as their primary identity and access management solution over the past 20 years. It is so common that Active Directory (AD) is used by approximately 90% of the Global Fortune 1000 companies today. It also means that adversaries know that encountering AD being used in the organization they are targeting is very likely. Adversaries also know that knowing how to abuse its weaknesses in the form of security misconfigurations would increase the likelihood of their operation being a success.

This paper presents the risk organizations face today caused by common security misconfigurations in AD. It also presents in detail specific open-source tools and commands to detect or hunt these identified security misconfigurations and provides specific remediation techniques to improve the AD environment's current security posture.

Abstract Format

html

Note

Project paper

Language

English

Format

Electronic

Physical Description

[110 leaves]

Keywords

Directory services (Computer network technology)

Upload Full Text

wf_yes

Embargo Period

2-6-2022

Share

COinS