This section focuses on the core security indicators.
Locate the sub-process determining the score and fix some rules in that area to get a score improvement.
Domain Risk Level: 0 / 100
It is the score computed based on the rules that matched during the analysis
This section represents the maturity score (inspired from ANSSI).
This feature is reserved for customers who have purchased a license
This section represents an evaluation of the techniques available in the MITRE ATT&CK®
This feature is reserved for customers who have purchased a license
No rule matched
This section shows information about the local Active Directory domain.
DirectorySynchronizationStatus | LastDirSyncTime | LastPasswordSyncTime | DirSyncApplicationType | DirSyncClientMachineName | DirSyncClientVersion | DirSyncServiceAccount |
---|---|---|---|---|---|---|
Disabled |
This section displays potential information about the local Active Directory
The local SID couldn't be detected
This section shows information about the DNS domains registered.
Name | IsInitial | Authentication | Capabilities | Status | Verified by |
---|---|---|---|---|---|
pingcastle.com | False | Managed | None | Verified | DnsRecord |
pingcastle.onmicrosoft.com | True | Managed | Email, OfficeCommunicationsOnline | Verified | DnsRecord |
This section shows information about the Networks registered.
This section shows information about trusted tenants.
This information is extracted from https://docs.microsoft.com/en-us/azure/active-directory/external-identities/cross-tenant-access-settings-b2b-direct-connect
TenantId | Tenant Name | AllowB2BFrom | AllowB2BTo | AllowNativeFederationFrom | AllowNativeFederationTo | lastModified |
---|
Name | Region | TenantID | Number of domains | GuestsCount | MemberCount | Total |
---|---|---|---|---|---|---|
vinci.com | EU | 6612aa33-55a2-4f05-ad52-359bbfce0374 | 1 | 0 | 1 | 1 |
This section gives information about the user accounts stored in AzureAD
Nb User Accounts | Nb User Guests | Nb User Members | Nb User External Members | Nb User Internal Members | Nb User Internal Members sync on premise | Nb User Internal Members Pure Azure | Password never expires |
---|---|---|---|---|---|---|---|
3 | 0 | 3 | 1 | 2 | 0 | 2 | 0 |
This section is focused on the groups which are critical for admin activities. If the report has been saved which the full details, each group can be zoomed with its members. If it is not the case, for privacy reasons, only general statistics are available.
Group Name | Critical? ? | Nb Admins ? | No MFA ? | On premise accounts | Password Never Expires | LastPasswordChangeTimestamp |
---|---|---|---|---|---|---|
Company Administrator | True | 1 | 1 | 0 | 0 | 1 |
Application Administrator | False | 0 | 0 | 0 | 0 | 0 |
Application Developer | False | 0 | 0 | 0 | 0 | 0 |
Attack Payload Author | False | 0 | 0 | 0 | 0 | 0 |
Attack Simulation Administrator | False | 0 | 0 | 0 | 0 | 0 |
Attribute Assignment Administrator | False | 0 | 0 | 0 | 0 | 0 |
Attribute Assignment Reader | False | 0 | 0 | 0 | 0 | 0 |
Attribute Definition Administrator | False | 0 | 0 | 0 | 0 | 0 |
Attribute Definition Reader | False | 0 | 0 | 0 | 0 | 0 |
Authentication Administrator | True | 0 | 0 | 0 | 0 | 0 |
Authentication Policy Administrator | False | 0 | 0 | 0 | 0 | 0 |
Azure AD Joined Device Local Administrator | False | 0 | 0 | 0 | 0 | 0 |
Azure DevOps Administrator | False | 0 | 0 | 0 | 0 | 0 |
Azure Information Protection Administrator | False | 0 | 0 | 0 | 0 | 0 |
B2C IEF Keyset Administrator | False | 0 | 0 | 0 | 0 | 0 |
B2C IEF Policy Administrator | False | 0 | 0 | 0 | 0 | 0 |
Billing Administrator | False | 0 | 0 | 0 | 0 | 0 |
Cloud App Security Administrator | False | 0 | 0 | 0 | 0 | 0 |
Cloud Application Administrator | False | 0 | 0 | 0 | 0 | 0 |
Cloud Device Administrator | False | 0 | 0 | 0 | 0 | 0 |
Compliance Administrator | False | 0 | 0 | 0 | 0 | 0 |
Compliance Data Administrator | False | 0 | 0 | 0 | 0 | 0 |
Conditional Access Administrator | False | 0 | 0 | 0 | 0 | 0 |
Customer LockBox Access Approver | False | 0 | 0 | 0 | 0 | 0 |
Desktop Analytics Administrator | False | 0 | 0 | 0 | 0 | 0 |
Device Join | False | 0 | 0 | 0 | 0 | 0 |
Device Managers | False | 0 | 0 | 0 | 0 | 0 |
Device Users | False | 0 | 0 | 0 | 0 | 0 |
Directory Readers | False | 0 | 0 | 0 | 0 | 0 |
Directory Synchronization Accounts | False | 0 | 0 | 0 | 0 | 0 |
Directory Writers | False | 0 | 0 | 0 | 0 | 0 |
Domain Name Administrator | False | 0 | 0 | 0 | 0 | 0 |
Dynamics 365 Administrator | False | 0 | 0 | 0 | 0 | 0 |
Edge Administrator | False | 0 | 0 | 0 | 0 | 0 |
Exchange Administrator | False | 0 | 0 | 0 | 0 | 0 |
Exchange Recipient Administrator | False | 0 | 0 | 0 | 0 | 0 |
External ID User Flow Administrator | False | 0 | 0 | 0 | 0 | 0 |
External ID User Flow Attribute Administrator | False | 0 | 0 | 0 | 0 | 0 |
External Identity Provider Administrator | False | 0 | 0 | 0 | 0 | 0 |
Global Reader | False | 0 | 0 | 0 | 0 | 0 |
Groups Administrator | False | 0 | 0 | 0 | 0 | 0 |
Guest Inviter | False | 0 | 0 | 0 | 0 | 0 |
Helpdesk Administrator | True | 0 | 0 | 0 | 0 | 0 |
Hybrid Identity Administrator | False | 0 | 0 | 0 | 0 | 0 |
Identity Governance Administrator | False | 0 | 0 | 0 | 0 | 0 |
Insights Administrator | False | 0 | 0 | 0 | 0 | 0 |
Insights Analyst | False | 0 | 0 | 0 | 0 | 0 |
Insights Business Leader | False | 0 | 0 | 0 | 0 | 0 |
Intune Administrator | False | 0 | 0 | 0 | 0 | 0 |
Kaizala Administrator | False | 0 | 0 | 0 | 0 | 0 |
Knowledge Administrator | False | 0 | 0 | 0 | 0 | 0 |
Knowledge Manager | False | 0 | 0 | 0 | 0 | 0 |
License Administrator | False | 0 | 0 | 0 | 0 | 0 |
Lifecycle Workflows Administrator | False | 0 | 0 | 0 | 0 | 0 |
Message Center Privacy Reader | False | 0 | 0 | 0 | 0 | 0 |
Message Center Reader | False | 0 | 0 | 0 | 0 | 0 |
Network Administrator | False | 0 | 0 | 0 | 0 | 0 |
Office Apps Administrator | False | 0 | 0 | 0 | 0 | 0 |
Partner Tier1 Support | False | 0 | 0 | 0 | 0 | 0 |
Partner Tier2 Support | False | 0 | 0 | 0 | 0 | 0 |
Password Administrator | False | 0 | 0 | 0 | 0 | 0 |
Permissions Management Administrator | False | 0 | 0 | 0 | 0 | 0 |
Power BI Administrator | False | 0 | 0 | 0 | 0 | 0 |
Power Platform Administrator | False | 0 | 0 | 0 | 0 | 0 |
Printer Administrator | False | 0 | 0 | 0 | 0 | 0 |
Printer Technician | False | 0 | 0 | 0 | 0 | 0 |
Privileged Authentication Administrator | True | 0 | 0 | 0 | 0 | 0 |
Privileged Role Administrator | False | 0 | 0 | 0 | 0 | 0 |
Reports Reader | False | 0 | 0 | 0 | 0 | 0 |
Search Administrator | False | 0 | 0 | 0 | 0 | 0 |
Search Editor | False | 0 | 0 | 0 | 0 | 0 |
Security Administrator | False | 0 | 0 | 0 | 0 | 0 |
Security Operator | False | 0 | 0 | 0 | 0 | 0 |
Security Reader | False | 0 | 0 | 0 | 0 | 0 |
Service Support Administrator | False | 0 | 0 | 0 | 0 | 0 |
SharePoint Administrator | False | 0 | 0 | 0 | 0 | 0 |
Skype for Business Administrator | False | 0 | 0 | 0 | 0 | 0 |
Teams Administrator | False | 0 | 0 | 0 | 0 | 0 |
Teams Communications Administrator | False | 0 | 0 | 0 | 0 | 0 |
Teams Communications Support Engineer | False | 0 | 0 | 0 | 0 | 0 |
Teams Communications Support Specialist | False | 0 | 0 | 0 | 0 | 0 |
Teams Devices Administrator | False | 0 | 0 | 0 | 0 | 0 |
Usage Summary Reports Reader | False | 0 | 0 | 0 | 0 | 0 |
User Administrator | True | 0 | 0 | 0 | 0 | 0 |
Virtual Visits Administrator | False | 0 | 0 | 0 | 0 | 0 |
Windows 365 Administrator | False | 0 | 0 | 0 | 0 | 0 |
Windows Update Deployment Administrator | False | 0 | 0 | 0 | 0 | 0 |
Workplace Device Join | False | 0 | 0 | 0 | 0 | 0 |
Here is a list of the application defined on AzureAD.
Display Name | External App | Application Permissions | Critical? ? | Delegated Permissions | Critical? ? | Roles ? | Critical? ? | Azure Role ? |
---|---|---|---|---|---|---|---|---|
test-pingcastle-cloud | False | 2 | False | 1 | False | 1 | 0 | 1 |
Microsoft Office 365 Portal | True | 0 | False | 0 | False | 3 | 1 | 3 |
Office 365 Message Encryption Portal | True | 0 | False | 1 | False | 0 | 0 | 0 |
Graph Explorer | True | 0 | False | 6 | True | 0 | 0 | 0 |
PingCastlePro | False | 2 | False | 2 | False | 1 | 0 | 1 |
Microsoft.Azure.SyncFabric | True | 0 | False | 0 | False | 1 | 0 | 1 |
PingCastleEnterprise | False | 0 | False | 1 | False | 0 | 0 | 0 |
test | False | 0 | False | 1 | False | 0 | 0 | 0 |
This is the list of external tenant having least at an application with a role
Tenant ID | Tenant Name | App example | Count |
---|---|---|---|
72f988bf-86f1-41af-91ab-2d7cd011db47 | Office 365 Message Encryption Portal | 2 | |
f8cdef31-a31e-4b4a-93e4-5f571e91255a | Microsoft Office 365 Portal | 2 |
This is the list of mailbox with a forward setting targetting a mailbox inside or outside of this tenant
Mailbox | Destination | External |
---|