Microsoft Netlogon Vulnerability (CVE-2020-1472 – Zerologon)

Post Reply
Shane1145
Posts: 1836
Joined: Wed Sep 25, 2024 2:31 pm

Microsoft Netlogon Vulnerability (CVE-2020-1472 – Zerologon)

Post by Shane1145 »

The prime elements of this vulnerability are the weak encryption standards and the authentication process used in the Netlogon protocol. As new Windows Domain Controllers use standard AES-256 as encryption standards, incorrect use of the AES mode results in spoofing the identity of any computer (DC) account and replace it with all zeroes or empty passwords. As the final output replaces all characters of the password with zeroes, this bug is also well-known as “Zerologon”.


https://blog.qualys.com/vulnerabilities ... ualys-vmdr
Post Reply