logo

Validating the SolarWinds N-central “Dumpster Diver” Vulnerability

ID: a47e840d-afa9-52ba-9029-973912ef0a0c

STIX ID: report--a47e840d-afa9-52ba-9029-973912ef0a0c

Feed Name: Huntress Blog

Threat Score
80/100

Date Published: 2020-01-24

Date Updated: 2026-04-28

...
...

A proof-of-concept vulnerability in an MSP management platform allowed a fake Windows agent to register in a customer dashboard and extract stored domain administrator credentials; the Huntress team validated the PoC within hours, noted a large attack surface (4,000+ Shodan results), and flagged the situation as critical due to rapid exploitation potential.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.