All the passwords were stored in Active Directory description fields
An organization exposed all user passwords by storing them in plain text within Active Directory description fields, making it trivial for attackers to harvest credentials. The security lapse allowed …