Skip to content

Certighost: Exploit Enables Windows Domain Takeover

Bottom line: A publicly available exploit named Certighost enables Windows domain takeover and requires immediate remediation measures.

An exploit named Certighost is circulating online and allows attackers to compromise Windows domains. Administrators must secure their systems as quickly as possible.

An exploit named Certighost is in circulation and allows attackers to gain control over Windows-based domains. The vulnerability affects Microsoft infrastructure and thus poses a direct threat to organizations relying on Windows domain management.

For CISOs, this represents an immediate danger to network security perimeters. Successful exploitation enables attackers to obtain administrative privileges and thereby take complete control of the infrastructure. This jeopardizes not only data integrity but also the availability of critical systems.

Administrators should promptly review their Windows systems and implement the required security measures to prevent exploitation of the exploit. This includes deploying available patches and reviewing logs for suspicious activity related to domain authentication.


Source: www.golem.de · Published July 28, 2026
Lumi AI News — AI-assisted curation in accordance with Article 50 EU AI Act. Paraphrase and classification through Lumi News Pipeline v1.7.3.

Share on: