7MS #526: Tales of Pentest Pwnage - Part 37 episode artwork

EPISODE · Jun 24, 2022 · 34 MIN

7MS #526: Tales of Pentest Pwnage - Part 37

from 7 Minute Security

Today's another fun tale of pentest pwnage - specifically focused on cracking a hash type I'd never paid much attention to before: cached domain credentials. I also learned that you can at least partially protect against this type of hash being captured by checking out this article, which has you set the following setting in GPO: Under Computer Configuration > Policies > Windows Settings > Security Settings > Local Policies > Security Options set Interactive logon: Number of previous logons to cache to 0. Be careful, as you will have login problems if a domain controller is not immediately accessible! In regards to defending against secretsdump, this article I found this article to be super interesting.

Episode metadata supplied by the publisher feed · Published Jun 24, 2022

Embed this episode

NOW PLAYING

7MS #526: Tales of Pentest Pwnage - Part 37

0:00 34:40

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of 7 Minute Security?

This episode is 34 minutes long.

When was this 7 Minute Security episode published?

This episode was published on June 24, 2022.

Can I download this 7 Minute Security episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!