Zero-Day
Certighost and the Privilege Hiding in Your Certificate Authority
CVE-2026-54121 lets a standard domain user turn your Enterprise CA into a Domain Controller. The patch is the easy part. The lesson is standing privilege, implicit trust, and treating PKI as the Tier 0 identity infrastructure it has always been.
BleepingComputer··3 min read
This page shows a short summary from the RSS feed — not the full article.
Read full article on BleepingComputer