Ten DNS Server vulnerabilities could lead to Remote Code Execution and Information Disclosure on Domain Controllers with default configurations

When looking at the April 2023 Patch Tuesday today, I noticed ten updates that specifically address vulnerabilities in DNS Server. These vulnerabilities are specific to Domain Controllers running DNS Server (in the default configuration), so this sparked my interest in these updates.   About the vulnerabilities Nine DNS Server remote code execution vulnerabilities were addressed: … Continue reading "Ten DNS Server vulnerabilities could lead to Remote Code Execution and Information Disclosure on Domain Controllers with default configurations"

On-premises Identity-related updates and fixes for March 2023

Even though Microsoft’s Identity focus moves towards the cloud, Windows Server 2016, Windows Server 2019 and Windows Server 2022 still receive updates to improve the experiences and security of Microsoft’s on-premises powerhouses. This is the list of Identity-related updates and fixes we saw for March 2023:   Windows Server 2016 We observed the following update … Continue reading "On-premises Identity-related updates and fixes for March 2023"

Join us for the GET-IT Identity Management and Privileged Access Management Conference on March 30, 2023

A few weeks ago, I was invited as a speaker for Petri.com’s GET-IT Identity Management and Privileged Access Management 1-Day Virtual Conference on March 30th, 2023.   About the GET-IT Identity Management and Privileged Access Management Conference GET-IT Conferences are 1-day virtual events, organized by Petri.com. The upcoming GET-IT Conference has Identity Management and Privileged Access Management … Continue reading "Join us for the GET-IT Identity Management and Privileged Access Management Conference on March 30, 2023"

Join us for a Webinar on the Importance of Active Directory Monitoring

On Tuesday March 21st, 2023, I will be presenting a free 60-minute webinar on Active Directory, together with Jay Gundotra of ENow fame.   About this webinar In case you've forgotten; Active Directory is Microsoft's on-premises Identity management solution. Most large organization use it as their primary Identity and Access Management (IAM) solution and then … Continue reading "Join us for a Webinar on the Importance of Active Directory Monitoring"

On-premises Identity-related updates and fixes for February 2023

Even though Microsoft’s Identity focus moves towards the cloud, Windows Server 2016, Windows Server 2019 and Windows Server 2022 still receive updates to improve the experiences and security of Microsoft’s on-premises powerhouses. This is the list of Identity-related updates and fixes we saw for February 2023:   Windows Server 2016 We observed the following update … Continue reading "On-premises Identity-related updates and fixes for February 2023"

HOWTO: Troubleshoot Windows Hello for Business Hybrid Access

Windows Hello for Business on Azure AD-joined devices is capable of providing single sign-on access to Active Directory domain-joined services and servers in Hybrid Identity setups. Microsoft provides guides to configure this access in several ways: Certificate Trust, Key Trust and Hybrid Cloud Trust. Each of the three Windows Hello for Business Hybrid Access trust … Continue reading "HOWTO: Troubleshoot Windows Hello for Business Hybrid Access"

Happy 23rd Birthday, Active Directory!

Today, The DirTeam.com / ActiveDir.org Weblogs are celebrating the 23-year anniversary of Active Directory Domain Services as a released product.   Windows 2000 Server The introduction of Active Directory to the world was part of the release of Windows 2000 Server on February 17, 2000. At the launch event, Bill Gates ushered in the Next Generation … Continue reading "Happy 23rd Birthday, Active Directory!"

On-premises Identity-related updates and fixes for January 2023

Even though Microsoft’s Identity focus moves towards the cloud, Windows Server 2016, Windows Server 2019 and Windows Server 2022 still receive updates to improve the experiences and security of Microsoft’s on-premises powerhouses. This is the list of Identity-related updates and fixes we saw for January 2023:   Windows Server 2016 We observed the following update … Continue reading "On-premises Identity-related updates and fixes for January 2023"

Best Active Directory Monitoring tool

Today, Active Directory is still the cornerstone of most networking infrastructure environments. In Hybrid Identity environments, where on-premises Active Directory is coupled with Azure AD, the reliance on Active Directory is enormous. In these environments, the answers to the question ‘What if something would happen to Active Directory?’ range from ‘Everything goes down’ to ‘Game … Continue reading "Best Active Directory Monitoring tool"

You're invited to the IT-University Masterclass – Adequately Securing Active Directory

On February 6th, 2023, I will be presenting a masterclass, together with Raymond Comvalius for IT-University.nl. Dutch Raymond and I will be presenting on a topic that is close to my heart: Active Directory. Active Directory has captivated the hearts of adversaries. Some ransomware gangs just simply lose interest want the device of a potential victim … Continue reading "You're invited to the IT-University Masterclass – Adequately Securing Active Directory"