Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I work in security and yes, it definitely helps in some cases with preventing lateral movement. Since servers aren't rebooted often, if I choose to run mimikatz to dump creds off of the server and steal a user's password, that password may as well be useless if the user logged in long enough for a password reset to have been enforced in that time.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: