Zerologon
loresecurity
A 2020 flaw letting attackers take over a Windows domain controller.
Zerologon exploited a cryptographic weakness in the Netlogon protocol so that an attacker on the network could reset a domain controller's machine password and seize control. It was rated maximum severity.
Also known as: Zerologon, CVE-2020-1472
Sources
- CVE-2020-1472 (2020)