
Configuring Windows to Block or Audit Hash Dump Attempts in Simulated Attack and Defense Scenarios
RedTeamBlueTeam
In a simulated attack and defense context, it is possible to configure Windows to immediately block hash dump attempts or enable auditing to generate logs in case of hash dump attempts. This configuration helps detect and prevent information gathering activities within the domain.