Windows security update blocks PetitPotam NTLM relay attacks
Using the PetitPotam vector, a threat actor can use the Windows LSARPC interface to communicate and execute MS-EFSRPC API functions for malicious purposes without authentication.
Using the PetitPotam vector, a threat actor can use the Windows LSARPC interface to communicate and execute MS-EFSRPC API functions for malicious purposes without authentication.
Tags: attacksblocksNTLMPetitPotamRelaysecurityUpdateWindows
by HakTechs · Published October 24, 2022
by HakTechs · Published April 13, 2021
by HakTechs · Published December 2, 2022
Best Articles