NTLM Attack PetitPotam Lets Hackers Take Over Windows Domains

A new NTLM attack called PetitPotam allows hackers to take over a domain controller, and thus an entire Windows domain. Previously an NTLM attack that used Microsoft Active Directory Certificate Services has been reported. PetitPolam attack doesn't rely on the MS-RPRN API but instead uses the EfsRpcOpenFileRaw function of the MS-EFSRPC API. Read more...    

Read More

Comments

Loading... Logging you in...
  • Logged in as
There are no comments posted yet. Be the first one!

Post a new comment

Comments by