Security News > 2024 > October > Exploit released for new Windows Server "WinReg" NTLM Relay attack

2024-10-22 17:26
Proof-of-concept exploit code is now public for a vulnerability in Microsoft's Remote Registry client that could be used to take control of a Windows domain by downgrading the security of the authentication process. [...]
News URL
Related news
- Windows NTLM vulnerability exploited in multiple attack campaigns (CVE-2025-24054) (source)
- Windows NTLM hash leak flaw exploited in phishing attacks on governments (source)
- China-Linked Hackers Exploit SAP and SQL Server Flaws in Attacks Across Asia and Brazil (source)
- Two Distinct Botnets Exploit Wazuh Server Vulnerability to Launch Mirai-Based Attacks (source)
- New BPFDoor Controller Enables Stealthy Lateral Movement in Linux Server Attacks (source)
- New Windows Server emergency updates fix container launch issue (source)
- CVE-2025-24054 Under Active Attack—Steals NTLM Credentials on File Download (source)
- ⚡ Weekly Recap: iOS Zero-Days, 4Chan Breach, NTLM Exploits, WhatsApp Spyware & More (source)
- Microsoft fixes Windows Server 2025 blue screen, install issues (source)
- Craft CMS RCE exploit chain used in zero-day attacks to steal data (source)