Free Republic
Browse · Search
General/Chat
Topics · Post Article

To: rdb3; JosephW; martin_fierro; Still Thinking; zeugma; Vinnie; ironman; Egon; raybbr; AFreeBird; ...

2 posted on 07/30/2024 12:01:54 PM PDT by ShadowAce (Linux - The Ultimate Windows Service Pack )
[ Post Reply | Private Reply | To 1 | View Replies ]


To: ShadowAce
Hi ShadowAce, thanks for the ping.

Yeah, my company has AD providing authn/authz for our vCenter VMware, and we have an "ESX Admins" AD group.

And a couple years ago we learned the hard way what happens if your AD Domain Controllers are all VMs and things go down hard. We eventually beat the lockouts and got in but it was brutal and scary. We resolved to have at least one hardware DC thereafter.

I think the reason I'm not all hair-on-fire about this CVE is that, as I understand it, the Bad Actor has to already be in your system and have sufficient creds in AD to create or add to an AD Group. If that's the case your goods are already in deep trouble, and while this adds more, it's not the root cause of the intrusion.

3 posted on 07/30/2024 12:34:03 PM PDT by dayglored (“Courtesy is owed. Respect is earned. Love is given.” - Kinky Friedman 1944-2024)
[ Post Reply | Private Reply | To 2 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson