Active Directory
The latest Active Directory coverage — news, analysis, and updates from the WindowsNews.AI desk.
Windows LAPS 2023 slashes credential theft risk 92% with Azure AD and RBAC
Local administrator accounts have long been a double-edged sword in Windows environments—essential for troubleshooting yet historically vulnerable to credential theft and lateral movement attacks....
Windows Server 2025 DCs bricked by April patch firewall profile switch
Windows Server 2025 Domain Controller Crisis: A Post-Mortem on the April 2025 Firewall Bug A significant firewall bug in the April 2025 security updates for Windows Server 2025 caused a widespread...
Critical Windows Server 2025 bugs fixed as June Patch Tuesday targets Kerberos and Credential Guard exploits.
Microsoft's June 2025 Patch Tuesday has delivered crucial security updates addressing multiple critical vulnerabilities in Windows Server 2025, particularly affecting Active Directory authentication...
Windows Server 2025 AD Bug: Microsoft's Patch & Enterprise Resilience Lessons
The discovery and subsequent patching of a critical Windows Server 2025 restart bug affecting Active Directory Domain Controllers has sent ripples through the enterprise IT community, highlighting...
CVE-2025-33073 Exploited: How Reflective Kerberos Relay Attacks Threaten Windows Security
A newly discovered vulnerability in Windows' Kerberos authentication protocol has sent shockwaves through the cybersecurity community. CVE-2025-33073, now actively exploited in the wild, enables...
Microsoft June Patch Tuesday: Patch 66 flaws including 6 critical RCE and 1 actively exploited zero-day
Microsoft's June Patch Tuesday has arrived with a substantial security payload, addressing 66 documented vulnerabilities across Windows, Office, and other core products. Among these fixes are six...
Windows Server 2025 Domain Controllers: Fixing Firewall Profile Bugs for Reliable Networks
Windows Server 2025 has introduced significant improvements in domain controller reliability, but administrators recently faced a critical challenge: firewall profile bugs causing unexpected network...
April 2025 Windows Server Update Causes Kerberos Auth Failures: Fixes Inside
When Microsoft's monthly security updates promise stronger defenses, IT professionals and organizations worldwide often breathe a sigh of relief. Yet, as the April 2025 security updates reached...
Critical WebDAV & SMB flaws patched June 2025—exploits active, CVSS 9.8
Microsoft’s June 2025 Patch Tuesday addresses two critical vulnerabilities—CVE-2025-XXXX in Windows WebDAV and CVE-2025-YYYY in SMB—that could allow remote code execution and privilege...
Semperis Boosts DSP to Counter Windows Server 2025 Active Directory Risks
Semperis has taken a proactive step in enterprise security by upgrading its Directory Services Protector (DSP) platform to address a critical vulnerability in Windows Server 2025's Active Directory....
Microsoft Urges Immediate Kerberos Hardening as BadSuccessor Flaw Threatens Active Directory in Windows Server 2025
Microsoft's upcoming Windows Server 2025 introduces a dangerous new security vulnerability dubbed 'BadSuccessor' that could compromise Active Directory environments worldwide. Cybersecurity...
Semperis Boosts Windows Server 2025 Security with Advanced Active Directory Threat Detection
Semperis, a leader in identity-driven cyber resilience, has introduced groundbreaking detection capabilities to combat emerging Active Directory (AD) vulnerabilities in Windows Server 2025. This...