LDAP Channel Binding and Signing
Tags
attack-pattern: | Credentials - T1589.001 Exploits - T1587.004 Exploits - T1588.005 Ntds - T1003.003 Server - T1583.004 Server - T1584.004 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | 8fdead73-1622-4054-b913-d35e9cd542c9 |
Fingerprint | b518da1e14897dc7 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Jan. 22, 2021, 5:12 p.m. |
Added to db | Sept. 26, 2022, 9:33 a.m. |
Last updated | Nov. 17, 2024, 5:58 p.m. |
Headline | LDAP Channel Binding and Signing |
Title | LDAP Channel Binding and Signing |
Detected Hints/Tags/Attributes | 37/1/12 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://www.hub.trimarcsecurity.com/post/ldap-channel-binding-and-signing |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 4 | cve-2017-8563 |
|
Details | CVE | 10 | cve-2019-1040 |
|
Details | Domain | 11 | dirkjanm.io |
|
Details | Domain | 80 | portal.msrc.microsoft.com |
|
Details | Domain | 243 | cve.mitre.org |
|
Details | Domain | 1 | oxfordcomputergroup.com |
|
Details | Url | 2 | https://dirkjanm.io/worst-of-both-worlds-ntlm-relaying-and-kerberos-delegation |
|
Details | Url | 1 | https://dirkjanm.io/exploiting-cve-2019-1040-relay-vulnerabilities-for-rce-and-domain-admin |
|
Details | Url | 1 | https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/cve-2017-8563 |
|
Details | Url | 106 | https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve |
|
Details | Url | 1 | https://oxfordcomputergroup.com/resources/ldap-channel-binding-signing-requirements |
|
Details | Windows Registry Key | 1 | HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NTDS\Diagnostics |