Reply to post:

Insert 'Skeleton Key', unlock Microsoft Active Directory. Simples – hackers

big_D Silver badge

As Lost all Faith says, the key here is that you can do "the dirty" in the name of somebody else, without leaving a trail back to yourself.

The good side is, that the attacker needs admin access to the domain controller in the first place, in order to plant the malware. If he can do that, then you have bigger problems than Skeleton Key. Either hackers have taken over your network, or you have an employee with a grudge and the keys to the system.

SK isn't good, but it is probably the least of your concerns by that point - of course, if it is done properly, you won't know that there is anything wrong, or the PFY is busy setting up the bean counters, so that he can get his next big pay rise.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon