DETECTION OVERVIEW
Risk Factors
LDAP servers can be misconfigured to send usernames and passwords over unencrypted connections. This misconfiguration increases the risk of exposing passwords to attackers and can lead to further exploits of high-value assets.
Kill Chain
Risk Score
65
Secure LDAP by configuring SSL/TLS on LDAP servers
Disable simple bind authentication on LDAP servers and implement stronger authentication frameworks, such as Simple Authentication and Security Layer (SASL)