Is there a list of exact attack vectors for the lazy?
Both tools in the demo video are SMB-based. I wonder how exploitable is a machine if it has SMB properly disabled and blocked.
Both tools in the demo video are SMB-based. I wonder how exploitable is a machine if it has SMB properly disabled and blocked.
https://support.microsoft.com/en-gb/help/2696547/how-to-enab...
For my money, disable SMBv1 anyway and use a firewall and (V)LANs.
Samba, pop this under [global] to disable SMBv1 min protocol = SMB2
To disable it try "systemctl stop smbd" or "/etc/init.d/smbd stop" or ... 8)
Which is going to be Domain Controllers, the most highly privileged servers on most corporate networks. And accessible to the "entire" network too. Group Policy is distributed through SMB shares.