White Paper

THE SECURITY RISKS OF NTLM

THE SECURITY RISKS OF NTLM

Pages 8 Pages

Mitigating NTLM risks involves disabling or minimizing NTLM use, migrating to more secure protocols like Kerberos or NTLMv2 with Extended Protection for Authentication (EPA), enforcing SMB and LDAP signing, implementing network segmentation, and deploying multi-factor authentication. Tools such as Local Administrator Password Solution (LAPS) and continuous monitoring for suspicious authentication events can help detect and prevent pass-the-hash attacks. Organizations should assess and phase out NTLM, especially NTLMv1, to reduce attack surfaces and comply with modern security standards.

Join for free to read