← Back to Feed
'Certighost' Flaw Haunts Microsoft Active Directory Certificates
July 28, 2026 · Dark Reading · Severity: HIGH
This article reports on a high-severity vulnerability in Microsoft Active Directory certificates, dubbed 'Certighost'. The flaw enables threat actors to escalate privileges and compromise an AD environment. Microsoft released a patch earlier this month to address the issue.
Key Takeaways
- Microsoft patched a high-severity Active Directory certificate vulnerability.
- The flaw allows attackers to escalate privileges and compromise AD environments.
- Organizations should apply the patch to mitigate risk.