SMB Relay Attacks Explained: Why You MUST Enable SMB Signing Immediately

Поделиться
HTML-код
  • Опубликовано: 1 окт 2024
  • SMB relay attacks are a very simple and effective method that attackers can use to get user credentials or hashes.
    Once attackers have this hash, they can use it to escalate their access on other systems in your environment.
    In this video, we also discuss how SMB Signing can prevent relay attacks and help harden your environment.
    For more guides on small business cybersecurity strategies and tips, check out: theinfosecacademy.com

Комментарии • 5

  • @remcojansen5923
    @remcojansen5923 3 года назад +1

    interesting video thank you for sharing!
    Would have loved to see how the traffic looks like with signing on though

  • @sando2287
    @sando2287 2 года назад

    Trying to fully understand SMB and appreciate your videos. Question, what is the point in enabling smb without smb signing? Is there still some sort of security without the singing enabled?

  • @JNET_Reloaded
    @JNET_Reloaded 3 года назад +1

    does linux samba use smb signing? or can it rather?

    • @theinfosecacademy
      @theinfosecacademy  3 года назад

      You need to set it in the samba conf file "client signing = mandatory"

  • @notta3d
    @notta3d 2 года назад

    What a great video. Very well said. Thanks.