Deploying Files via Group Policies or How Group Policy Updates Can Ruin Your Day

20. October 2022

During a workstation assessment at the beginning of 2021, usd HeroLab analysts identified a trivial privilege escalation vulnerability occurring during Group Policy Updates. The vulnerability itself was not exploitable by default, but relied on a misconfiguration. However, this type of misconfiguration seemed to occur in other environments as well, so they informed Microsoft about the issue.

With their LabNews blog post, they want to raise awareness of this problem and help other security analysts and system administrators to recognize and fix it.

Continue to blog post

Also interesting:

DEF CON | Las Vegas | 10. - 13. August 2023

DEF CON | Las Vegas | 10. - 13. August 2023

DEF CON is the longest running and largest underground hacking conference in the world. It is known for its in-depth focus on computer security and hacking and provides a platform for some of the greatest minds in the field to share their knowledge and work together...

FIBE Berlin | Berlin | 15. - 16. April 2026

FIBE Berlin | Berlin | 15. - 16. April 2026

FIBE Berlin is one of Europe’s leading finance and tech festivals. On 15 and 16 April 2026, it will bring together professionals and executives from the finance, technology, and start-up sectors at CityCube Berlin. The event will focus on current developments in...

Effectively Implementing Third-Party Risk Management under DORA

Effectively Implementing Third-Party Risk Management under DORA

The Digital Operational Resilience Act (DORA) is now a reality for financial institutions and their service providers. In 2026, the focus will shift to the practical implementation of third-party risk management at financial institutions, as BaFin will conduct its...

Categories

Categories