‘Certighost’ Flaw Haunts Microsoft Active Directory Certificates
Microsoft’s Active Directory Certificate Services (AD CS) have been left vulnerable to exploitation after researchers uncovered a flaw that allows attackers to impersonate domain controllers and compromise AD environments. The issue, dubbed “Certighost,” was patched in Microsoft’s recent Patch Tuesday update but not before proof-of-concept exploit code was released. The vulnerability affects the enterprise certificate … Read more