Windows security update blocks PetitPotam NTLM relay attacks
Using the PetitPotam vector, a threat actor can use the Windows LSARPC interface to communicate and execute MS-EFSRPC API functions for malicious purposes without authentication.
Using the PetitPotam vector, a threat actor can use the Windows LSARPC interface to communicate and execute MS-EFSRPC API functions for malicious purposes without authentication.
Tags: attacksblocksNTLMPetitPotamRelaysecurityUpdateWindows
by HakTechs · Published July 5, 2021
by HakTechs · Published April 24, 2021
by HakTechs · Published March 30, 2021
Best Articles