SANS Digital Forensics and Incident Response Blog: Tag - access tokens

Protecting Privileged Domain Accounts: Safeguarding Access Tokens

[Author's Note: This is the 4th in a multi-part series on the topic of "Protecting Privileged Domain Accounts". My primary goal is to help incident responders protect their privileged accounts when interacting with comprised hosts, though I also believe this information will be useful to anyone administering and defending a Windows environment.] I've previously written … Continue reading Protecting Privileged Domain Accounts: Safeguarding Access Tokens