Windows 8.1 Security Improvements Helps Protect Against Pass the Hash Attacks
This cyber security month, we’d like to congratulate and thank Microsoft on their efforts to block Pass the Hash Attacks. Known by Microsoft as “one of the most popular types of credential theft and reuse attacks,” Pass the Hash attacks are known for their ability to infiltrate full networks within minutes, making a major mess along the way.
With the Windows 8.1 update released on October 1, Microsoft has added major security improvements that are intended to block the ability of hackers to use these kinds of attacks. With the new release, Microsoft has bought us all some “space to breathe.”
Use your space wisely and remember that cyber security is constantly evolving. Take these three steps to help strengthen your organization’s password practices.
- Administrator accounts still need to be separated and used with care. Segment administrator accounts into a regular AD account and a user-specific Domain Administrator account for use only when privilege is needed.
- Lock down Domain Administrator passwords in a secure place where the administrator can access them when needed, and admin access is fully audited, so you have a record of use.
- Change Domain Administrator passwords to a new, random value after each use.
These steps can be incorporated into your security policy and implemented manually or through an automation tool, such as Secret Server. Password management tools provide added value to security and password management when they enable role-based access, sharing among teams, and full auditing for compliance.
Latest posts by Thycotic Team (see all)
- Top 4 Password Blunders And How Thycotic Can Help - January 24, 2017
- Top 3 New Features in Secret Server 10.1 - January 18, 2017
- Security Metrics Must Tell a Story That is Relevant to Your Business - September 6, 2016