CVE-2023-0922 - How Samba Exposed Your Reset Passwords Over Unencrypted Connections (With Exploit Example)
---
Overview
In early 2023, a major security flaw hit Samba’s Active Directory Domain Controller (AD DC) admin tool. Tagged CVE-2023-0922, this bug exposed
CVE-2023-0614 - How Incomplete Samba Fixes Risked BitLocker Recovery Keys
In February 2023, security researchers discovered that several previous updates meant to patch a years-old vulnerability in Samba fell short. Specifically, the insufficient fixes from
CVE-2022-45141 - Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability, Explained for Real-World Admins
On November 8, 2022, Microsoft publicly disclosed a critical security vulnerability (CVE-2022-45141) affecting the RC4-HMAC encryption type in Kerberos authentication. This vulnerability doesn't
Episode
00:00:00
00:00:00