access control

  1. Critical Vulnerabilities in Kastle Systems' Access Control: CISA Advisory Overview

    Introduction Recently published by CISA on September 19, 2024, the advisory on vulnerabilities affecting Kastle Systems' Access Control System has raised significant concerns. With a high CVSS score of 9.2, the vulnerabilities in question involve hard-coded credentials (CVE-2024-45861) and the...
  2. CVE-2024-38183: Critical GroupMe Vulnerability Requires User Vigilance

    Introduction On September 17, 2024, the Microsoft Security Response Center (MSRC) published an advisory regarding a significant vulnerability identified as CVE-2024-38183 affecting GroupMe, the popular messaging platform owned by Microsoft. This vulnerability entails an improper access control...
  3. Auto user login fails. Messe up Pwd

    Can someone explain to me how I can deactivate or delete one of my Autostart users as an Admin? My problem is that every time I start Win11, I am told that the pwd for my auto-username login is incorrect. I can get into the system with a different Admin UserId and Pwd. However, I cannot...
  4. Baxter Connex Health Portal Vulnerabilities: Critical SQL Injection and Access Control Flaws

    Executive Summary of Vulnerabilities The vulnerabilities reported are particularly concerning due to the following classifications: CVSS v3.1 Score: 10.0 - This outstanding value indicates a critical security flaw with a high potential for exploitation. Attack Vector: The vulnerabilities can be...
  5. E

    Securing SAN Data in a Windows Network: Best Practices?

    Hi everyone, I’m looking for advice on securing our Storage Area Network (SAN) within a Windows environment to prevent unauthorized access and ensure data integrity. We’re using an iSCSI SAN with Windows Server 2019, and our primary concerns are: Access Control: Best practices for using Active...
  6. Windows 11 Python and Windows File System Permissions

    What is the best way to read a files owner and permissions, create a new file then apply those permissions without using the subprocess method or command line icacls etc.
  7. Least Privilege Principle

    I have been struggling with this for some time... At our company, like I assume at every enterprise, management believe that we (they) have implemented "least privilege principle", i.e. every software and every user has only those rights and privileges that are really needed for the task to be...
  8. K

    Seeking Advice on Security & Access Systems

    Hello everyone, I'm currently exploring options for implementing a security and access control system for my home/business, and I could use some advice from those with experience in this area. I'm particularly interested in understanding the different types of systems available, such as...
  9. Flash Drive Password Lock

    Salutations. I was wondering if anyone knew of a software that will bring up a "enter password" box on Windows 11 Home (Android optional) whenever it's plugged in as to prevent any kind of access like on Bitlocker (I'm assuming) or like on any Laptop. I don't care if it's paid or free, but a...
  10. S

    Backup operators privileges added to user are getting reflected or applied.

    AD :Backup operators privileges added to user are getting reflected or applied. The user is added to Backup operators Privilege member group the privileges are not being reflected in CLI . Below are the configuration, Expected, and Actual Privileges. Config: bo user is member of Backup Operators...
  11. Inherit destination folder permissions when moving file.

    Good afternoon, here at the company I have a Win Server 19 file server. Each department has its own folders and there is a folder for document processing where everyone has access. When a department needs to process a file for another department, they move the file to the processing folder so...
  12. Domain admin who can just install software on few machines

    Hi everybody! I need to have a domain admin who can just install software on few domain pcs, nothing else, I understood I should create a GPO but... I'd like to understand how can I restrict permissions and where could I start... Regards. GabrieleMax
  13. J

    Windows 10 Network storage security

    I received today the Zalman ZM-WE450 WIFI enclosure and planning to buy 4TB HDD for it. It works pretty well but since it is old it is limited to the speed of the WIFI 2.4GHz. I am trying to find a way to limit who can access it on the network. It is currently connected to the WIFI rounder and...
  14. Windows 10 Having remote access to our office server

    Hi all. A few of my colleagues have been given laptop so they can be more portable. In the office we have a mapped network drive (Z). This is where we have all of our client folders etc.... Essentially, the whole company runs from this location. I've been tasked with finding the best way for...
  15. S

    SMB wide open to internet

    Currently my smb is wide open to the internet, I can simply key in my server up address on file browser and I can access these files ; without VPN connection. How can I close the smb to the internet and only users whom are connected to the server using VPN and LAN can access these files? How do...
  16. Remote desktop idle timeout

    Hello, Is it possible to setup idle timeout for all except one user ? Thank you
  17. Windows 10 Restrict Visitor account from applications

    Hi Evertybody, I'm using Windows-10 (Home) and recently added a "guest" account that I call Visitor. I want to restrict the Visitor account from even opening certain applications, such as my private accounting and tax programs. How do I go about doing that?
  18. VIDEO Are Windows Limited User Accounts Effective?

    :iee:
  19. is there such a program

    Is there a program for controlling a computer from a phone so that at the same time I can provide access to only one open window so that only this window is visible on the phone? I need this to connect a friend, run the same game twice, so that we play together using my pc
  20. V

    Prevent set of users(admin users) to run or manage schedule task using GPO

    Hi, I have list of administrator users, i want to deny permission for create, manage, delete task scheduler using GPO or any other setting,