Skip to content

Commit

Permalink
+blog
Browse files Browse the repository at this point in the history
  • Loading branch information
Print3M committed Apr 28, 2024
1 parent b5fbffd commit 87faf2a
Showing 1 changed file with 1 addition and 0 deletions.
1 change: 1 addition & 0 deletions _blog/windows-default-settings.md
Original file line number Diff line number Diff line change
Expand Up @@ -24,6 +24,7 @@ Below is a set of default Windows client and server settings right after install
* [RDP](https://securitree.xyz/windows-lateral-movement/rdp) service is disabled.
* RDP Pass-The-Hash (Restricted Admin Mode) is disabled. [Read more here](https://securitree.xyz/windows-lateral-movement/rdp).
* [WMI](https://securitree.xyz/windows-lateral-movement/ms-wmi) is allowed on firewall.
* SMB is allowed on firewall. This is especially important for [RPC-named-pipe-based lateral movement techniques](https://securitree.xyz/windows-lateral-movement/ms-rpc) such as [PsExec or SmbExec](https://securitree.xyz/windows-lateral-movement/ms-scmr).

Default Domain Controller (with AD DS enabled) port scan:

Expand Down

0 comments on commit 87faf2a

Please sign in to comment.