WSUS Is SUS: NTLM Relay Attacks in Plain Sight

TL;DR


Summary:
- This article discusses a security vulnerability in the Windows Server Update Services (WSUS) system, which is used to manage software updates for Windows computers.
- The vulnerability allows attackers to perform NTLM relay attacks, which can give them unauthorized access to other systems on the network.
- The article explains how the attack works and provides steps that organizations can take to mitigate the risk, such as disabling NTLM authentication and implementing additional security measures.

Like summarized versions? Support us on Patreon!