The Vilkas Wire

Insights and field notes from real-world penetration tests and security research by the experts at Vilkas.

Latest Posts

Showing 6 of 6 total posts

How to Enforce LDAP Signing in Active Directory (And Why It Matters)

How to Enforce LDAP Signing in Active Directory (And Why It Matters)

LDAP signing is a critical but often overlooked setting in Active Directory environments. When disabled, attackers can intercept or manipulate LDAP traffic using man-in-the-middle attacks or NTLM relaying. This post explains what LDAP signing is, why enforcing it is essential for AD security, and how to safely configure it using Group Policy—without breaking legacy systems.

Jul 22, 20255 min read
Read Post
Top 10 Internal Penetration Test Findings of 2024

Top 10 Internal Penetration Test Findings of 2024

Recently, while making some additions to our in-house penetration testing reporting tool, we started looking into metrics. What types of metrics would be useful in-house? To our clients? While reviewing data from prior year pentest reports, we decided to review the most prevalent internal network pentest findings from 2024.

Jul 18, 20259 min read
Read Post
What is ms-DS-MachineAccountQuota and Why It Matters

What is ms-DS-MachineAccountQuota and Why It Matters

When it comes to securing Active Directory, some of the most dangerous vulnerabilities aren’t flashy zero-days — they’re default settings that most organizations have never changed. One of the most quietly impactful is a setting called ms-DS-MachineAccountQuota.

Jul 2, 20254 min read
Read Post

Want to Contribute?

Whether you're breaking down a recent pentest or reflecting on a red team engagement, we welcome your insights. Share your tactics, lessons learned, and perspectives with the community.

Learn How to Contribute