File permissions, privileges and misconfiguration review
Many serious weaknesses are not missing software but wrong settings — permissions that are too loose, privileges granted too widely, and services configured more openly than they should be. This runs through every part of the audit.
We look at issues such as:
- File and directory permissions that expose data or allow it to be altered.
- Accounts and service privileges that are broader than the job requires.
- Default or weak configurations left in place after setup.
- Exposed services that should be restricted to local or trusted access.
Misconfigurations are dangerous precisely because they look like a working system — nothing is broken, so nothing draws attention. The audit's job is to find the weak permissions and exposed settings across your services before an attacker does, and to say clearly what needs correcting.

0 comments
Sign in with your TDesk account to comment.