Monthly Archives: April 2008

My failed attempt to break aDDS using oWNER RIGHTS

Windows Server 2008 introduces a new security principal called OWNER RIGHTS.  It was introduced to fill a security and delegation loophole in previous versions of Windows whereby creators of objects potentially inherit more permissions than are intended.  For detailed information on how the new feature works in the context of AD, see Jorge’s blog entry… Read More: My failed attempt to break aDDS using oWNER RIGHTS »