Windows Local Security Authority (LSA) Spoofing Vulnerability “PetitPotam”
ID: a6b5a4f0-e494-5677-8b28-2600bc7823a2
STIX ID: report--a6b5a4f0-e494-5677-8b28-2600bc7823a2
Feed Name: Arctic Wolf Blog
Threat Score
### Executive Summary The report details CVE-2021-36942 (PetitPotam), an NTLM/LSA spoofing technique affecting multiple Windows Server versions that can allow attackers to steal credentials from domain controllers and potentially gain full domain control; Microsoft released patches and Arctic Wolf recommends prioritizing domain controllers for patching.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
