Active Directory Security25 July 2026
Certighost (CVE-2026-54121): Any Domain User Could Impersonate a Domain Controller
A public exploit shows how a certificate-enrollment fallback in AD CS let any authenticated domain user forge a Domain Controller identity and pull the krbtgt secret via DCSync.
active-directoryad-cscve-2026-54121