← Back to Feed

'Certighost' Flaw Haunts Microsoft Active Directory Certificates

July 28, 2026 · Dark Reading · Severity: HIGH

This article reports on a high-severity vulnerability in Microsoft Active Directory certificates, dubbed 'Certighost'. The flaw enables threat actors to escalate privileges and compromise an AD environment. Microsoft released a patch earlier this month to address the issue.

Key Takeaways

  • Microsoft patched a high-severity Active Directory certificate vulnerability.
  • The flaw allows attackers to escalate privileges and compromise AD environments.
  • Organizations should apply the patch to mitigate risk.
☕ Buy a Coffee