Insufficient forest and domain functional levels

Active Directory

A low forest and domain functional level exposes your Active Directory environment to critical vulnerabilities, making it easier for attackers to exploit deprecated protocols and escalate privileges.

AD user added to privileged group

Active Directory

Attackers can escalate privileges and access sensitive data through unauthorized access when a user is added to a privileged Active Directory group.

AD domain controller with SMB1 enabled

Active Directory

A domain controller with SMB1 enabled exposes a high-risk vulnerability that attackers can exploit for remote code execution via the SMBv1 protocol, allowing lateral movement and privilege escalation within the domain.