logo

Critical Windows Netlogon RCE flaw now exploited in attacks

ID: e1695559-7f24-51fc-8edb-30dad5b9fb20

STIX ID: report--e1695559-7f24-51fc-8edb-30dad5b9fb20

Feed Name: Bleeping Computer

Threat Score
90/100

Date Published: 2026-06-01

Date Updated: 2026-06-01

Author: Sergiu Gatlan

...
...

The Centre for Cybersecurity Belgium (CCB) warned that threat actors are actively exploiting CVE-2026-41089, a recently patched critical Windows Netlogon stack-based buffer overflow (CVSS 9.8) that can allow unauthenticated remote code execution on domain controllers across supported Windows Server versions; the advisory urges immediate patching. The article also notes multiple other zero-day disclosures and in-the-wild exploitation of privilege escalation and BitLocker-related flaws tied to a researcher known as 'Nightmare Eclipse'.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.