Detects principals with WriteProperty on msDS-KeyCredentialLink for privileged users (adminCount=1) and DC computer objects. Low-priv: reads schema and ACLs via LDAP.
Inheritance
- Object
- ShadowCredentialsRiskService
Returns: View
Evaluates shadow credential risks by inspecting ACLs on privileged users (adminCount=1) and DC computers.
Parameters
- domainName System.String requiredposition: 0
- DNS name of the Active Directory domain.
Returns
Aggregated View with findings.
Returns: Boolean
Inherited from Object
Parameters
- obj Object requiredposition: 0
Returns: Int32
Inherited from Object
Returns: Type
Inherited from Object
Returns: String
Inherited from Object