-
Patch Lady – make sure your domain controllers are patched
Microsoft is seeing active attacks for the “Zerologon” exploit that could take over a domain. Note this is not important for home users, only domain controllers in a domain. If you have not installed the August updates (or September) on your Domain controllers you need to do so as soon as possible.
Microsoft is actively tracking threat actor activity using exploits for the CVE-2020-1472 Netlogon EoP vulnerability, dubbed Zerologon. We have observed attacks where public exploits have been incorporated into attacker playbooks.
— Microsoft Threat Intelligence (@MsftSecIntel) September 24, 2020