Giter Site home page Giter Site logo

subat0mik / misconfiguration-manager Goto Github PK

View Code? Open in Web Editor NEW
569.0 16.0 54.0 8.43 MB

Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening guidance.

Home Page: https://misconfigurationmanager.com

License: GNU General Public License v3.0

PowerShell 100.00%

misconfiguration-manager's People

Contributors

dilomsec1 avatar garrettfoster13 avatar jhp8234 avatar mayyhem avatar noctedefensor avatar subat0mik avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

misconfiguration-manager's Issues

TAKEOVER-3 requirements error?

For TAKEOVER-3, TAKEOVER-8:

Domain controller settings:
RestrictNTLMInDomain = 0 or not present, or is configured with any value and DCAllowedNTLMServers contains coercion target
LmCompatibilityLevel < 5 or not present, or = 5 and LmCompatibilityLevel >= 3 on the coercion target

I'm assuming that should be "LmCompatibilityLevel <= 3 on the coercion target"?

[Minor] Unicode zero-width space breaking some links

Hi! First of all, congratulations on this awesome project, it's an amazing reference already.

I noticed a (very minor) issue with some Unicode characters breaking links from some of the Markdown technique descriptions. Specifically, there are some Zero-Width spaces (\u200b) floating around after hyperlinks, which actually break the link as follows (example from CRED-1):

https://github.com/MWR-CyberSec/PXEThief%E2%80%8B

Here's the full list (obviously, not all of these are actually breaking links):
image

It's obviously simple to remediate with a single find-and-replace and I would submit a PR for this, but it's so minor that I wouldn't want to take 'contributor' credit for it ๐Ÿ˜‚. Let me know if that's what you prefer anyway.

Expand CRED technique content to include additional accounts

Minor Quibble about PXE Creds: I'd like to see this broken out into separate issues for each different type of credentials found. The different creds can appear under different circumstances, and prevention that is effective for some is not for others.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.