fbpx
Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Penetration Testing

          Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

Microsoft Fixes Windows Kerberos Authentication Issues In OOB Update

Microsoft Fixes Windows Kerberos Authentication Issues In OOB Update

Microsoft has released out-of-band optional updates to fix a known issue that causes Kerberos authentication problems on enterprise domain controllers after installing security updates released earlier this month to address CVE-2020-17049.

CVE-2020-17049 is a remotely exploitable Kerberos Constrained Delegation (KCD) security feature bypass security bug that exists in the way KDC determines if service tickets can be used for delegation.

Kerberos replaced the NTLM protocol as the default authentication protocol for domain connected devices on all Windows versions above Windows 2000.

This OOB update comes after Microsoft started investigating the Kerberos authentication issue over the weekend, on November 14.

Also Read: How To Prevent WhatsApp Hack: 7 Best Practices

Issues on impacted Windows versions

“As part of this issue, ticket renewal and other tasks, such as scheduled tasks and clustering, might fail,” Microsoft says in a Windows Message Center update.

“This issue only affects Windows Servers, and Windows 10 devices and applications in enterprise environments.”

According to Microsoft, admins might encounter the following issues writable and read-only domain controllers (DC):

  • Kerberos service tickets and ticket-granting tickets (TGT) might not renew for non-Windows Kerberos clients when PerformTicketSignature is set to 1 (the default).
  • Service for User (S4U) scenarios, such as scheduled tasks, clustering, and services for line-of-business applications, might fail for all clients when PerformTicketSignature is set to 0.
  • S4UProxy delegation fails during ticket referral in cross-domain scenarios if DCs in intermediate domains are inconsistently updated and PerformTicketSignature is set to 1.

More details on potential issues that could occur after installing security updates to mitigate CVE-2020-17049 can be found on the Windows Health Dashboard.

Also Read: Key PDPA Amendments 2019/2020 You Should Know

Fix available only for some Windows versions

This OOB update can be used to mitigate the known issue on Windows Server versions 2012, 2012 R2, 2019, and 1809.

IT admins are recommended to install the optional updates on Domain Controllers only if they are affected by this known issue.

The full list of impacted platforms impacted by this issue is available in the table below, together with the cumulative updates causing the issue and the optional updates that mitigate the issue.

Affected platforms
ServerOriginating updateOOB optional update
Windows Server, version 20H2KB4586781N/A
Windows Server, version 2004KB4586781N/A
Windows Server, version 1909KB4586786N/A
Windows Server, version 1903KB4586786N/A
Windows Server, version 1809KB4586793KB4594442
Windows Server 2019KB4586793KB4594442
Windows Server 2016KB4586830N/A
Windows Server 2012 R2KB4586845KB4594439
Windows Server 2012KB4586834KB4594438

The update is not available through Windows Update or Microsoft Update channels. To install it you will have to download the update packages from the Microsoft Update Catalog or use Windows Server Update Services (WSUS).

This out-of-band optional update designed to address these Kerberos authentication and ticket renewal issues will also be released for additional Windows 10 versions in the near term.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us