You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: ATPDocs/remove-discoverable-passwords-active-directory-account-attributes.md
+5-1Lines changed: 5 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -57,4 +57,8 @@ To address this security assessment, follow these steps:
57
57
1. Fully remove the sensitive information. Don’t just mask the value. Partial obfuscation (for example, P@ssw***) can still offer useful clues to attackers.
58
58
59
59
> [!NOTE]
60
-
> Assessments are updated in near real time. Scores and statuses are updated every 24 hours. The list of impacted entities is updated within a few minutes of you implementing the recommendations. The status might take time until it's marked as **Completed**.
60
+
> Assessments are updated in near real time. Scores and statuses are updated every 24 hours. The list of impacted entities is updated within a few minutes of you implementing the recommendations. The status might take time until it's marked as **Completed**.
61
+
62
+
## Related articles
63
+
64
+
-[Learn more about Microsoft Secure Score](/defender-xdr/microsoft-secure-score)
Copy file name to clipboardExpand all lines: ATPDocs/remove-inactive-service-account.md
+8-8Lines changed: 8 additions & 8 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -7,15 +7,15 @@ ms.topic: how-to
7
7
8
8
# Security Assessment: Remove Inactive Service Accounts
9
9
10
-
This recommendation lists Active Directory service accounts that have been detected as inactive (stale) within the past 180 days.
10
+
This recommendation lists Active Directory service accounts detected as inactive (stale) within the past 180 days.
11
11
12
12
## Why do inactive service accounts pose a risk?
13
13
14
-
Unused service accounts can pose significant security risks to your organization, as some of these accounts can possess elevated privileges, which, if accessed by an attacker, could result in substantial damage. Therefore, it is imperative to identify and address any unused or orphaned service accounts.
14
+
Unused service accounts can pose significant security risks to your organization, as some of these accounts can possess elevated privileges, which, if accessed by an attacker, could result in substantial damage. Therefore, it's imperative to identify and address any unused or orphaned service accounts.
15
15
16
16
## How do I use this security assessment to improve my organizational security posture?
17
17
18
-
To leverage this security assessment effectively, follow these steps:
18
+
To use this security assessment effectively, follow these steps:
19
19
20
20
1. Review the recommended action at [https://security.microsoft.com/securescore?viewid=actions ](https://security.microsoft.com/securescore?viewid=actions ) for Remove inactive service account.
21
21
1. Review the list of exposed entities to discover which of your service account is inactive.
@@ -24,15 +24,15 @@ To leverage this security assessment effectively, follow these steps:
24
24
25
25
1. Take appropriate actions on those entities by removing the service account. For example:
26
26
27
-
-Disable the account: Prevent any usage by disabling the account identified as exposed.
27
+
-**Disable the account:** Prevent any usage by disabling the account identified as exposed.
28
28
29
-
-Monitor for impact: Wait several weeks and monitor for operational issues, such as service disruptions or errors.
29
+
-**Monitor for impact:** Wait several weeks and monitor for operational issues, such as service disruptions or errors.
30
30
31
-
-Delete the account: If no issues are observed, proceed to delete the account and fully remove its access.
31
+
-**Delete the account:** If no issues are observed, delete the account and fully remove its access.
32
32
33
33
> [!NOTE]
34
-
> Assessments are updated in near real time, and scores and statuses are updated every 24 hours. The list of impacted entities is updated within a few minutes of your implementing the recommendations. The status may take time until it's marked as **Completed**.
34
+
> Assessments are updated in near real time, and scores and statuses are updated every 24 hours. The list of impacted entities is updated within a few minutes of your implementing the recommendations. The status might take time until it's marked as **Completed**.
0 commit comments