Cq
Claritiq
·
U - Admin Access
Critical
Caution
Healthy · target
Scope: eni.enigron.com · c1.eni.enigron.com
Total Privileged Users
52
across 7 admin groups
Enabled Privileged
47
5 disabled but still in groups
Kerberoastable Admins
3
SPN + admin group
Admins w/ PwdNoExpiry
12
No rotation clock
Admins w/ Mailbox
38
Tier-0 hygiene gap
New Admins (30d)
1
persistence-TTP signal
Privileged group membership
| Group | Enabled | Disabled | Members |
|---|---|---|---|
| Domain Admins | 8 | 2 | 10 |
| Enterprise Admins | 3 | 1 | 4 |
| Schema Admins | 2 | 0 | 2 |
| Account Operators | 12 | 1 | 13 |
| Server Operators | 8 | 1 | 9 |
| Backup Operators | 9 | 0 | 9 |
| Print Operators | 5 | 0 | 5 |
Security findings on privileged accounts
| Finding | Count |
|---|---|
| Admin with mailbox (Tier-0 hygiene) | 38 |
| Admin with PwdNoExpiry | 12 |
| Admin stale 90+ days | 9 |
| Admin password > 180d old | 7 |
| Disabled but still in admin group | 5 |
| Kerberoastable admin (SPN set) | 3 |
| Admin without Kerberos pre-auth | 2 |
| Recently created (30d) | 1 |
Cross-filter: click a finding row to see which admins trigger it in the detail table below.