Source |
The Hacker News |
Identifiant |
8417465 |
Date de publication |
2023-11-28 15:53:00 (vue: 2023-11-28 11:09:05) |
Titre |
Les pirates peuvent exploiter \\ 'Authentification forcée \\' pour voler des jetons NTLM Windows Hackers Can Exploit \\'Forced Authentication\\' to Steal Windows NTLM Tokens |
Texte |
Cybersecurity researchers have discovered a case of "forced authentication" that could be exploited to leak a Windows user\'s NT LAN Manager (NTLM) tokens by tricking a victim into opening a specially crafted Microsoft Access file.
The attack takes advantage of a legitimate feature in the database management system solution that allows users to link to external data sources, such as a remote SQL
Cybersecurity researchers have discovered a case of "forced authentication" that could be exploited to leak a Windows user\'s NT LAN Manager (NTLM) tokens by tricking a victim into opening a specially crafted Microsoft Access file.
The attack takes advantage of a legitimate feature in the database management system solution that allows users to link to external data sources, such as a remote SQL |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
access advantage allows attack authentication can case could crafted cybersecurity data database discovered exploit exploited external feature file forced hackers have lan leak legitimate management manager microsoft ntlm opening remote researchers solution sources specially sql steal such system takes tokens to link tricking user users victim windows |
Tags |
Threat
|
Stories |
|
Move |
|