Esc
Reversible Encryption - T1556.005
(ATT&CK® Technique)
Definition
An adversary may abuse Active Directory authentication encryption properties to gain access to credentials on Windows systems. The AllowReversiblePasswordEncryption property specifies whether reversible password encryption for an account is enabled or disabled. By default this property is disabled (instead storing user credentials as the output of one-way hashing functions) and should not be enabled unless legacy or other software require it.
D3FEND Inferred Relationships
Browse the D3FEND knowledge graph by clicking on the nodes below.