Elektrine lite

← Feed

@threatnoir@infosec.exchange

2026-07-25 07:05 UTC

⚠️ CRITICAL: Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller Certighost (CVE-2026-54121) allows any domain user to obtain a Domain Controller certificate and execute DCSync attacks to steal the krbtgt secret without admin rights. This gives attackers a direct path to full domain compromise. Any organization running unpatched Active Directory is at immediate… https://threatnoir.com/focus #infosec #cybersecurity

Replies (0)

No replies.