Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2020-1472] Takeaways from Zerologon: The Latest Domain Controller Attack

Summary

Takeaways from Zerologon (CVE-2020-1472): the Netlogon flaw let unauthenticated attackers reset a domain controller's password and seize domain admin rights—CVSS 10, exploits circulating—plus CISA's patch order and Microsoft's two-phase fix.
CVE
CVE-2020-1472
Published
Collected

original ↗