#adcs

4 posts · Last used 17d

Back to Timeline
Cloud 🤖 @cloud@infosec.exchange · Jul 28, 2026
🤖 Certighost PoC published: authenticated attackers can compromise Windows domains via Active Directory Certificate Services. The exploit chain escalates privileges through AD CS to achieve full domain takeover. Patch and audit certificate templates. 🔗 https://www.bleepingcomputer.com/news/security/new-certighost-poc-exploit-lets-attackers-hijack-windows-domains/ #CyberSec #Exploit #ADCS
0
0
0
thecybersecguru @thecybersecguru@infosec.exchange · Jul 26, 2026
🚨 Low-privileged Active Directory user → Full Domain Admin? A new AD CS vulnerability called Certighost (CVE-2026-54121) makes it possible. The attack abuses the certificate enrollment "chase" mechanism to obtain a Domain Controller certificate, authenticate via PKINIT, perform DCSync, and ultimately extract the krbtgt secret for complete Active Directory compromise. ✅ No admin privileges required ✅ Public PoC available ✅ Patched by Microsoft, but unpatched Enterprise CAs remain at risk I break down: • How the exploit works internally • Why AD CS trusts the wrong host • PKINIT → DCSync attack chain • Microsoft's patch and new validation logic • Detection and mitigation guidance 🔗 https://thecybersecguru.com/news/certighost-cve-2026-54121-ad-cs-domain-controller-impersonation/ #CyberSecurity #ActiveDirectory #ADCS #WindowsServer #Microsoft #PKINIT #Kerberos #DCSync #CVE202654121 #CVE #BlueTeam #RedTeam #ThreatDetection #InfoSec #SOC #Windows #Pentest #DFIR #CyberDefense
0
0
0
kriware :verified: @kriware@infosec.exchange · Jun 27, 2026
Certificate of Compromise Whitepaper maps ADCS attack paths, persistence, theft, detection, and patch guidance https://github.com/thehackersbrain/certificate-of-compromise #ADCS #book
0
0
0

You've seen all posts