New Attack Exploits dMSA in Windows Server 2025 to Compromise Any Active Directory Users

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

New Attack Exploits dMSA in Windows Server 2025 to Compromise Any Active Directory Users

Post by Shane1145 »

A critical vulnerability in Windows Server 2025 that enables attackers to compromise any user in Active Directory, including highly privileged accounts.

Dubbed “BadSuccessor,” this attack exploits a feature called delegated Managed Service Accounts (dMSA) and works by default in environments with at least one Windows Server 2025 domain controller.

https://cybersecuritynews.com/attack-ex ... rver-2025/
Post Reply