Windows OS exploit allows domain take over

Windows OS exploit allows domain takeover..

Sept 17, 2020

Windows Zerologon CVE-2020-1472 vulnerability that allow an attacker to take control of a Windows domain. Install patches now!

Experts view the vulnerability, called Zerologon, as one of the most severe ever to hit Microsoft. It was assigned a score of 10/10, the highest degree of severity under the Common Vulnerability Scoring System.

The exploit takes advantage of a faulty cryptographic algorithm employed during the Windows Server Netlogon authentication process. In doing so, the attacker can masquerade as the owner of any computer on a network during authentication, disable security functions and alter or delete passwords.

The entire attack takes no more than three seconds to execute.

Microsoft released a patch for this vulnerability in last month's patch, so if you did not install the Microsoft patches from August please do so ASAP.

If you have any questions please call into our helpdesk line or send us an email at info@tekleap.com