
WSUS Flaw Lets Attackers Turn Enterprise Update Servers Into Malware Delivery Systems
A compromised Windows Server Update Services (WSUS) deployment could be abused to distribute attacker-controlled software through an organization’s trusted patch-management infrastructure. The research highlights a dangerous attack path involving NTLM coercion, relay attacks, and weakly protected external WSUS database configurations. Published by SpecterOps researcher Beyviel David, Turning Enterprise Update Servers Into Backdoor Factories (0_o) – […]
The post WSUS Flaw Lets Attackers Turn Enterprise Update Servers Into Malware Delivery Systems appeared first on Cyber Security News.