Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Update Test-MtHighRiskAppPermissions.md
Added conceptional description for valid use-cases into test description: "There are several use cases where Tier-0 permissions with an indirect attack path are required. For example, Maester itself requires the permission “RoleEligibilitySchedule.ReadWrite.Directory” to properly validate the PIM assignments. Nevertheless, an administrator should question the use of these permissions and check whether less critical permissions are also sufficient. Applications that are provided by third-party vendors that do have Tier-0 permissions with direct or indirect attack paths should strictly be questioned and monitored. "
- Loading branch information