Zerologon
Last updated
Was this helpful?
Last updated
Was this helpful?
The Zerologon vulnerability allows for attackers to manipulate authentication mechanisms in Microsoft’s Active Directory Netlogon Remote Protocol and compromise the Domain Controller.
We are essentially the Domain Controller authentication to null so we can authenticate without a password.
This vulnerability can BREAK the Domain Controller so exploiting it in a real engagement shouldn't be done
Now here's how to do it :D