← Back

Wire · regulatory

New Certighost PoC exploit lets attackers hijack Windows domains

Published

27 July 2026

Topic

regulatory

Sectors

Cybersecurity

Geography

United States

Source

Read at bleepingcomputer.com

Verified

Fusion42 · 27 July 2026 · Fusion42 review

A proof-of-concept exploit for CVE-2026-54121 (Certighost), a Windows Active Directory Certificate Services vulnerability, has been publicly released, allowing authenticated attackers to impersonate domain controllers and compromise entire Windows domains. Microsoft patched the flaw in July 2026 Patch Tuesday updates.

This Wire brief sits within Fusion42's coverage of Cybersecurity. Wire is Fusion42's founder-focused intelligence feed: each story is connected to the funds and startups it names — every one with a live profile on Raise or Scout — so founders can follow the capital and the momentum behind the headline rather than just the headline itself. Wire analysis is one of the live surfaces Arthur reasons over.

◆ The Wire takeaway

If your product runs on Windows domains or manages Active Directory, your customers are now a single misconfigured certificate request away from total compromise. The patch is out, but the exploit is public - your sales and support teams need to confirm every customer has applied it before end of week.

Related on Wire

Topics

Cybersecuritywindows-securitydomain-compromisepoc-exploitpatch-urgent