Abusing Active Directory Federal Services (AD FS)
-
During my research i have to observe that developers are now becoming so addictive to using ldap logins as they are easier and can cut across various domains, organizations. However when they are misconfigured they could be very devastating. Example in the screenshot below
!
How do you protect the organisation from this kind of attack. I leave the question to you guys