Zerologon

lore

security

A 2020 flaw letting attackers take over a Windows domain controller.

Zerologon exploited a cryptographic weakness in the Netlogon protocol so that an attacker on the network could reset a domain controller's machine password and seize control. It was rated maximum severity.

Also known as: Zerologon, CVE-2020-1472

Sources

  • CVE-2020-1472 (2020)

All glossary entries