mal-lang / coreLang

A probabilistic attack simulation language for the (abstract) IT domain
https://mal-lang.org/coreLang/
Other
11 stars 13 forks source link

Networked identities vs local identities #5

Open pdeliasson opened 4 years ago

pdeliasson commented 4 years ago

How can/should we handle "network identities" like AD kerberos tokens, SAML and oauth tickets?

We need to understand if these can be modeled by methodology or if we need to create additional assets.

This question also includes to how these networked identities are linked to local privileges on endpoint systems.

skatsikeas commented 4 years ago

This card is relevant to this issue: https://github.com/mal-lang/coreLang/projects/2#card-36340793

More notes: