logo

Windows Local Security Authority (LSA) Spoofing Vulnerability “PetitPotam”

ID: a6b5a4f0-e494-5677-8b28-2600bc7823a2

STIX ID: report--a6b5a4f0-e494-5677-8b28-2600bc7823a2

Feed Name: Arctic Wolf Blog

Threat Score
65/100

Date Published: 2021-08-16

Date Updated: 2026-04-26

...
...

### Executive Summary The report details CVE-2021-36942 (PetitPotam), an NTLM/LSA spoofing technique affecting multiple Windows Server versions that can allow attackers to steal credentials from domain controllers and potentially gain full domain control; Microsoft released patches and Arctic Wolf recommends prioritizing domain controllers for patching.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.