Get a Pentest and security assessment of your IT network.

News

Windows security update blocks PetitPotam NTLM relay attacks

Microsoft has released security updates that block the PetitPotam NTLM relay attack that allows a threat actor to take over a Windows domain. The attack forces a domain controller to authenticate against another server using the MS-EFSRPC API functions without authentication. Microsoft blocks the attack as part of the August 2021 Patch Tuesday updates. Microsoft warns that installing this update may affect backup software that utilizes the EFS API OpenEncryptedFileRaw(A/W) function. Backup software that uses the API continues to work in all versions of Windows (local and remote)

Source: https://www.bleepingcomputer.com/news/microsoft/windows-security-update-blocks-petitpotam-ntlm-relay-attacks/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Vulnerabilities In Alibaba threatens security of million users

News

Russian cybercriminal Roman Seleznev gets another prison sentence