Enabled User Right in AD to Control User Objects — Detection Rule

Detects scenario where if a user is assigned the SeEnableDelegationPrivilege right in Active Directory it would allow control of other AD user objects.

Read the full analysis on IntelFusions