70 likes | 87 Views
Want to Know About Critical Windows RPC Vulnerability The Netlogon function from Microsoft has a cryptographic flaw termed Zerologon (CVE-2020-1472). It has a 10 point severity rating, and proof-of-concept exploits and actual attacks that employ it are already public knowledge. Zerologon's name derives from the logon procedure mistake. In this problem, the initialization vector (IV) is set to zeros, even though it should always be given a random value. By impersonating any computer, including the root domain controller, the attacker is then able to attack Microsoft Active Directory (AD) domain
E N D