Skip to content

Instantly share code, notes, and snippets.

@hiddenillusion
Last active June 27, 2020 10:09
Show Gist options
  • Save hiddenillusion/5a9ae2e36a3abd5d13c50c5e472885b0 to your computer and use it in GitHub Desktop.
Save hiddenillusion/5a9ae2e36a3abd5d13c50c5e472885b0 to your computer and use it in GitHub Desktop.

Credentials

Technology Rec. Notes
Multi factor authentication
LAPS Win
Pass-the-hash Win

Least Privilege

Link Notes
https://docs.microsoft.com/en-us/windows-server/identity/securing-privileged-access/privileged-access-workstations Win
https://blogs.msdn.microsoft.com/aaron_margosis/2015/06/30/lua-buglight-2-3-with-support-for-windows-8-1-and-windows-10/ Win

Network

Technology Rec. Notes
Network Segment network Win
Web Proxies Block uncategorized sites by default e.g., w/ Bluecoat

Harden

Technology Rec. Notes
limit workstation-to-workstation communication
limit egress points block outbound from servers via local FW

Logs

Technology Rec. Notes
WEF Win

Misc

Technology Rec. Notes
Email Prevent 3rd party employees (e.g., consultants) from sending email externally via corp. email address
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment