active-directory
39 articles with this tag
HIGH
HIGH
CRITICAL
CRITICAL
INFO
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
INFO
MEDIUM
HIGH
MEDIUM
MEDIUM
INFO
INFO
CRITICAL
MEDIUM
MEDIUM
HIGH
HIGH
INFO
INFO
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
HIGH
INFO
INFO
MEDIUM
MEDIUM
INFO
INFO
'Certighost' Flaw Haunts Microsoft Active Directory Certificates
Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities
Microsoft Patches Record 622 Vulnerabilities, Including Two Exploited Zero-Days
How Qualys ETM Identity Detects Identity-Based Attacks Faster
CVE-2026-58529 Windows Active Directory Federation Services (ADFS) Information Disclosure Vulnerability
CVE-2026-50647 Active Directory Federation Server Denial of Service Vulnerability
CVE-2026-50684 Active Directory Federation Server Spoofing Vulnerability
CVE-2026-54121 Active Directory Certificate Services Elevation of Privilege Vulnerability
CVE-2026-50682 Active Directory Denial of Service Vulnerability
CVE-2026-56155 Active Directory Federation Services Elevation of Privilege Vulnerability
CVE-2026-49178 Windows Active Directory Domain Services Remote Code Execution Vulnerability
CVE-2026-59998 sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if the server is in Windows Active Directory.
Threat actor uses AI-generated malware in network intrusion
Vibe-Coded Malware Caught in Active Directory Attack
UK school’s network left wide open for invasion, student found
All the passwords were stored in Active Directory description fields
Can you enforce strong Active Directory password rules without frustrating users?
Inside AD CS Escalation: Unpacking Advanced Misuse Techniques and Tools
Why Changing Passwords Doesn’t End an Active Directory Breach
CVE-2026-32072 Active Directory Spoofing Vulnerability
Containing a domain compromise: How predictive shielding shut down lateral movement
Containing a domain compromise: How predictive shielding shut down lateral movement
The 60ms Window: How Event 5156 Solves the ADWS Attribution Problem
The ADWS Architecture That Hides PowerShell AD Enumeration
Kerberoasting detection gaps in mixed-encryption environments and why 0x17 filtering alone isn't enough
Hacking Windows Active Directory in 10 minutes
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse
PSA: That 'Disable NTLMv1' GPO you set years ago? It’s lying to you. LmCompatibilityLevel set to 5 is not enough.
Samba 4.24.0 ships Kerberos hardening and a CVE fix for domain encryption defaults
Russian group uses AI to exploit weakly-protected Fortinet firewalls, says Amazon
Dynamic Objects in Active Directory: The Stealthy Threat
Your AD password complexity policies are security theater — one RPC call bypasses all of them (PoC scripts + defense included)
Why identity recovery is now central to cyber resilience
BloodHound Scentry helps organizations reduce identity risk and close attack paths
Firewalls Under Fire: What Breaks Next - and How to Stay Ahead
The (!FALSE) Pattern: How SOAPHound Queries Disappear Before They Hit Your Logs
Automating GOAD and Live Malware Labs
Zero trust in practice: A deep technical dive into going fully passwordless in hybrid enterprise environments