Services
Services
SOC & Attestations
SOC & Attestations
Payment Card Assessments
Payment Card Assessments
ISO Certifications
ISO Certifications
Privacy Assessments
Privacy Assessments
Federal Assessments
Federal Assessments
Healthcare Assessments
Healthcare Assessments
Penetration Testing
Penetration Testing
Cybersecurity Assessments
Cybersecurity Assessments
Crypto and Digital Trust
Crypto and Digital Trust
Schellman Training
Schellman Training
ESG & Sustainability
ESG & Sustainability
AI Services
AI Services
Industry Solutions
Industry Solutions
Cloud Computing & Data Centers
Cloud Computing & Data Centers
Financial Services & Fintech
Financial Services & Fintech
Healthcare
Healthcare
Payment Card Processing
Payment Card Processing
US Government
US Government
Higher Education & Research Laboratories
Higher Education & Research Laboratories
About Us
About Us
Leadership Team
Leadership Team
Careers
Careers
Corporate Social Responsibility
Corporate Social Responsibility
Strategic Partnerships
Strategic Partnerships

Active Directory Password Strength Assessment

A password strength audit will help you identify weak Active Directory passwords that are currently in use by your employees.

Contact a Specialist Read More About Schellman's Approach

What Happens During an AD Password Strength Assessment?

Are your employees using passwords that are easily guessable due to their length or complexity? Or were they leaked from previous data breach incidents? This analysis of the strength of your organization's passwords will identify patterns and trends of the passwords in use by your teams and provide you with justification to update password policies.

Assessing Your Password Strength Can Help You:

Schellman’s Active Directory Password Strength Assessment Methodology

Along with our dedicated multi-GPU powered hardware with multiple high-end graphics cards, we will use brute force to crack your Active Directory users’ password hashes before providing you with the discovered metrics and insight into how many users are choosing passwords that have been previously disclosed in past breaches or can be cracked due to using predictable formats (e.g., Winter2023!).  

Afterward, we’ll walk you through how to securely supply the password hashes for all domain users and then see how many can be guessed using an offline attack. 

Is Schellman the Right Firm for You?

Schellman does perform password strength assessments—our Penetration Testing Team continues to grow and is currently comprised of individuals from different backgrounds including former developers, system administrators, and lifelong security professionals. Our team is incredibly experienced, and collectively holds the following professional certifications, among others: 

Frequently Asked Questions

How long will a password strength audit take?

What does a password strength audit cost at Schellman?

How is a password strength audit performed?

Take the first step to test your password strength

Our team of practice leaders, not sales, are ready to talk and help determine your best next steps.

Start Scoping Your Penetration Test Contact a Specialist