Top 7 Ways to Protect Admin Passwords from Theft via Pass-the-Hash and Other Attacks

Webinar Registration

It doesn't matter how strong your password is if it can simply be stolen. And right now there are too many ways to do just that. This applies to privileged accounts as much as end-user accounts. And the issue isn't limited to on-premise systems – it affects the cloud as well. In fact I know of at least one company that actually went out of business because of privileged access to their Amazon Web Services account was compromised.

Just a few of the methods or risks include:

  1. Pass-the-hash
  2. Pass-the-ticket
  3. Harvesting cached credentials
  4. Harvesting saved passwords
  5. Keystroke logging
  6. Man-in-the-middle attacks
  7. Mimikatz
  8. Hash cracking
  9. Session hijacking

And the list goes on. In this real training for free webinar ™ I will provide an overview of the risks listed above so that you can zero in on what the real issue is. There are technical things you can do to combat each one of these and we'll discuss them.

But there's also a number of other more strategic controls you can put in place to comprehensively protect all important admin credentials including:

  1. Don't logon to untrusted systems with privileged accounts
  2. Harden and update endpoints to reduce admin credential artifacts and other weaknesses. New controls in Windows 2012, 8, 2016 and 10 specifically address this.
  3. Use jump boxes and 2-factor authentication
  4. Implement new features in windows
  5. Change the password every time it's used
  6. Arbitrary code protection
  7. Implement enterprise privileged credential management

We'll talk about how to address it with these 7 controls and I will demonstrate some of them. BeyondTrust, our sponsor, will briefly show how their PowerBroker Password Safe helps you eliminate the risk of stolen admin credentials by automatically changing the password every time it's used and more.

This is going to be a very technical and practical webinar. Don't miss this real training for free event ™. Please register now.

First Name:  
Last Name:  
Work Email:  
Phone:
Organization:
Country:  
State:
Zip/Postal Code:
Company size:
I'd like to schedule a personalized demo with a BeyondTrust rep for:
Industry:
 

Your information will be shared with the sponsor.

By clicking "Submit", you're agreeing to our Privacy Policy and consenting to be contacted by us and the sponsor.

 

 

Additional Resources