Skip to main content

Tag: ad cs

3 articles

Rows of computer servers in a data center, with one server highlighted in the center.

Certighost Exposes Hidden Privilege Risks in Certificate Authorities

A single misstep in a Certificate Authority can have devastating consequences, as seen in CVE-2026-54121, aka Certighost, which allows a low-privileged domain user to escalate to full domain compromise. This shocking vulnerability exploits a little-known "chase" functionality in Active Directory Certificate Services.

Analyst 207
Blurred Windows domain authentication screen on a computer terminal in a corporate office setting.

Certighost Exploit Hijacks Windows Domains With Authenticated Attacks

Beware of the Certighost exploit, a sneaky attack that lets hackers hijack Windows domains by manipulating machine account attributes and snagging authentication certificates. This vulnerability, tracked as CVE-2026-54121, was patched in July 2026, but not before security researchers publicly disclosed its technical details.

Analyst 207
Low-privileged user accesses restricted network area, symbolizing vulnerability.

Certighost Exploit Enables Low-Privilege AD Users to Impersonate Domain Controllers

A newly discovered exploit, dubbed Certighost, lets low-privileged Active Directory users impersonate Domain Controllers, posing a significant threat to security. This vulnerability, tracked as CVE-2026-54121, allows attackers to obtain a certificate for a Domain Controller and authenticate as that machine.

Analyst 207