4 ms·
This has been posted on /r/sysadmin on Reddit: https://www.reddit.com/r/sysadmin/comments/i7yh5d/cve20201472_netlogon_elevation_of_privilege/ https://www.reddi
by KindOne 6y ago
This has been posted on /r/sysadmin on Reddit:
https://www.reddit.com/r/sysadmin/comments/i7yh5d/cve20201472_netlogon_elevation_of_privilege/ https://www.reddit.com/r/sysadmin/comments/i7yh5d/cve2020147...
Twitter post explaining it:
https://twitter.com/RyanLNewington/status/1293444151644626944 https://twitter.com/RyanLNewington/status/129344415164462694...
Blog post explaining it:
https://www.tenable.com/blog/cve-2020-1472-zerologon-vulnerability-in-netlogon-could-allow-attackers-to-hijack-windows https://www.tenable.com/blog/cve-2020-1472-zerologon-vulnera...
POC:
https://infinitelogins.com/2020/09/15/abusing-cve-2020-1472-zerologon/ https://infinitelogins.com/2020/09/15/abusing-cve-2020-1472-...
- AlphaMaelstrom 6y agoI missed this on reddit though, so more coverage is a good thing. Need to make sure all our managed servers aren't behind on any updates first thing monday.
- WalterSobchak 6y agoWhitepaper for CVE-2020-1472: https://www.secura.com/pathtoimg.php?id=2055 https://www.secura.com/pathtoimg.php?id=2055 [PDF]
- javajosh 6y ago"Microsoft provided patches for CVE-2020-1472 in August"