More

    After years of cyberattacks, Microsoft cripples RC4 and forces networks to adopt stronger encryption immediately




    • RC4 has been exploited in high-profile attacks across enterprise Windows networks
    • Kerberoasting exploits weaknesses in Active Directory, allowing attackers to perform offline password cracking
    • AES-SHA1 requires thousands of times more resources than RC4 for cracking

    Microsoft is moving to disable RC4, an encryption cipher embedded in Windows authentication for more than two decades.

    The decision follows years of documented abuse, repeated warnings from security researchers, and several high-impact breaches tied to its continued availability.


    https://cdn.mos.cms.futurecdn.net/295f0b7d716f1d3f3a1cdf27b8a1616e-2560-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img