Security · 15h ago
Microsoft Patches 'Certighost' AD Certificate Privilege Escalation Flaw
Microsoft fixed a high-severity vulnerability in Active Directory Certificate Services, tracked as 'Certighost,' that allows privilege escalation. An attacker could exploit the flaw to compromise an entire AD environment. The patch was released earlier this month as part of Microsoft's regular update cycle.
Meridian48 take
While patched, the flaw underscores the critical risk of certificate-based attacks in enterprise identity infrastructure.
Read the full reporting
'Certighost' Flaw Haunts Microsoft Active Directory Certificates →
Dark Reading
microsoft-patchactive-directory