Blog | G5 Cyber Security

Windows Exploit Released For Microsoft ‘Zerologon’ Flaw

At least four public PoC exploits for a Windows flaw have been released on GitHub. The vulnerability, dubbed Zerologon, is a privilege-escalation glitch (CVE-2020-1472) with a CVSS score of 10 out of 10, making it critical in severity. The flaw stems from the Netlogon Remote Protocol, available on Windows domain controllers, which is used for various tasks related to user and machine authentication. If attackers are able to exploit the flaw, they can impersonate the identity of any machine on a network when attempting to authenticate to the Domain Controller.

Source: https://threatpost.com/windows-exploit-microsoft-zerologon-flaw/159254/

Exit mobile version