back to article What do F5, Citrix, Pulse Secure all have in common? China exploiting their flaws to hack govt, biz – Feds

The US government says the Chinese government's hackers are preying on a host of high-profile security holes in enterprise IT equipment to infiltrate Uncle Sam's agencies and American businesses. Yes, this sounds like something from the Department of the Bleeding Obvious – spies do spying on all sides, and all that – but what' …

  1. sanmigueelbeer Silver badge

    'Zerologon' Windows domain admin bypass exploit released

    'Zerologon' Windows domain admin bypass exploit released

    The Zerologon flaw allows an attacker with a foothold on an internal Windows network to simply send a number of Netlogon messages, filling various fields with zeroes, and changing the Active Directory stored password of a Domain Controller.

    Secura has also published a Python script on Github to test if a Domain Controller is vulnerable.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Biting the hand that feeds IT © 1998–2020