Close Menu
TechurzTechurz

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Microsoft and Uber alum raises $3M for YC-backed Munify, a neobank for the Egyptian diaspora

    August 29, 2025

    6G Wireless Will Use Aerial Base Stations

    August 29, 2025

    NATO To Reach 2% Goal

    August 29, 2025
    Facebook X (Twitter) Instagram
    Trending
    • Microsoft and Uber alum raises $3M for YC-backed Munify, a neobank for the Egyptian diaspora
    • 6G Wireless Will Use Aerial Base Stations
    • NATO To Reach 2% Goal
    • Trillion with a ‘T’? That’s a lot of dollars, Nvidia.
    • I took this MagSafe battery pack on vacation, but now it’s an everyday carry
    • The Download: Humans in space, and India’s thorium ambitions
    • What’s really happening with the hires at Meta Superintelligence Labs
    • KI greift erstmals autonom an
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechurzTechurz
    • Home
    • AI
    • Apps
    • News
    • Guides
    • Opinion
    • Reviews
    • Security
    • Startups
    TechurzTechurz
    Home»Security»‘Win-DDoS’: Researchers unveil botnet technique exploiting Windows domain controllers
    Security

    ‘Win-DDoS’: Researchers unveil botnet technique exploiting Windows domain controllers

    TechurzBy TechurzAugust 11, 2025No Comments1 Min Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    How to transition your organisation to Windows 11
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Research revealed more DoS flaws

    SafeBreach researchers also discovered CVE-2025-26673 in DC’s Netlogon service, where crafted RPC calls could crash the service remotely without authentication. By exploiting this weakness, attackers could knock out a critical Windows authentication component, potentially locking users out of domain resources until the system is rebooted. Similarly, CVE-2025-49716 targets Windows Local Security Authority Subsystem Service (LSASS), enabling a remote attacker to send specially formed LDAP queries that destabilize the service, leading to immediate DoS on the affected host.

    Rounding out SafeBreach’s list is CVE-2025-49722, a DoS flaw in Windows Print Spooler. This bug can be triggered by sending malformed RPC requests that cause the spooler process to fail, interrupting printing operations and, in some cases, impacting broader system stability.

    While Microsoft has fixed the LDAPNightmare (CVE-2024-49113) and CVE-2025-32724 through December 2024 and April 2025 Patch Tuesday releases, respectively, the remaining three of SafeBreach reported flaws remain unaddressed. Microsoft did not immediately respond to CSO’s request for comment. To defend against Win-DDoS and other DoS risks, SafeBreach urges applying Microsoft’s latest patches, limiting DC service exposure, segmenting critical systems, and monitoring for unusual LDAP or RPC traffic to detect attacks early.

    botnet controllers domain exploiting Researchers technique unveil WinDDoS Windows
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleWhat A Workvivo Study Reveals About The ‘Frontline Gap’
    Next Article Meta makes conservative activist an AI bias advisor following lawsuit
    Techurz
    • Website

    Related Posts

    Security

    I took this MagSafe battery pack on vacation, but now it’s an everyday carry

    August 29, 2025
    Security

    KI greift erstmals autonom an

    August 29, 2025
    Security

    Changing these 10 settings on my OnePlus phone gave it a big performance boost

    August 29, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Start Saving Now: An iPhone 17 Pro Price Hike Is Likely, Says New Report

    August 17, 20258 Views

    You Can Now Get Starlink for $15-Per-Month in New York, but There’s a Catch

    July 11, 20257 Views

    Non-US businesses want to cut back on using US cloud systems

    June 2, 20257 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Start Saving Now: An iPhone 17 Pro Price Hike Is Likely, Says New Report

    August 17, 20258 Views

    You Can Now Get Starlink for $15-Per-Month in New York, but There’s a Catch

    July 11, 20257 Views

    Non-US businesses want to cut back on using US cloud systems

    June 2, 20257 Views
    Our Picks

    Microsoft and Uber alum raises $3M for YC-backed Munify, a neobank for the Egyptian diaspora

    August 29, 2025

    6G Wireless Will Use Aerial Base Stations

    August 29, 2025

    NATO To Reach 2% Goal

    August 29, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2025 techurz. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.