Microsoft Taking Additional Steps to Address Zerologon Flaw
Guarding Against Vulnerability While Microsoft issued a patch for the Zerologon flaw in August 2020, it's not clear if all the company's customers have applied it to their networks to address the vulnerability. So, Microsoft will begin enabling domain controller enforcement mode by default, according to the company alert. "This will block vulnerable connections from non-compliant devices," Microsoft says. "Domain controller enforcement mode requires that all Windows and non-Windows devices use secure [remote procedure call] with Netlogon secure channel unless customers have explicitly allowed...