The gist: Microsoft warns of the Active Directory vulnerability CVE-2026-54121 (Certighost), for which public exploits exist.
Microsoft released a security patch for the Active Directory vulnerability CVE-2026-54121 (Certighost) on 14 July 2026. With proof-of-concept code now publicly available, the vendor warns of active attacks.
The vulnerability CVE-2026-54121, known as Certighost, affects Active Directory and was addressed with Microsoft’s July 2026 security updates. The patch was released on 14 July 2026.
For CISOs, the availability of publicly available proof-of-concept code is a critical indicator of heightened attack risk. Active Directory vulnerabilities typically enable attackers to move laterally within the network or bypass authentication mechanisms—a direct threat to the integrity of identity management.
Microsoft has provided guidance for detecting and hunting Certighost exploitations. Priority should be placed on deploying the patch and implementing recommended detection measures to identify compromised systems and lateral movement.
Source: borncity.com · Published 28 July 2026
Lumi AI News — AI-assisted curation in accordance with Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.