Semperis Research Uncovers Critical Flaw in Windows Server 2025 Exposing Managed Service Accounts to Golden dMSA Attack
17 Articles
17 Articles
Semperis has released new research results on "Golden dMSA", a critical design error in delegated service accounts (dMSA) in Windows Server-2025. The vulnerability can lead to severe attacks that allow cross-domain lateral movements and permanent access to all managed service accounts and their resources in Active Directory indefinitely. The Golden dMSA attack exploits a cryptographic vulnerability that makes Microsoft's latest security innovati…


Semperis publishes the results of a new study highlighting a significant vulnerability in the delegated managed service accounts (DMSA) of Windows Server 2025. Named Golden dMSA, this flaw allows cyber attackers to permanently compromise the service accounts used by companies. To facilitate the practical understanding and management of this new attack, Adi Malyanker, researcher at Semperis, has developed a tool with the same name: GoldenDMSA. Th…
Critical Flaw In Windows Server 2025 Exposed - Cybernoz - Cybersecurity News
Semperis has released new research detailing Golden dMSA, a critical design flaw active in delegated Managed Service Accounts (dMSAa) in Windows Server 2025. The flaw can result in high-impact attacks, enabling cross-domain lateral movement and persistent access to all managed service accounts and their resources across Active Directory indefinitely. To help further understanding of how this attack technique works in practice, Semperis Researche…
Coverage Details
Bias Distribution
- 100% of the sources lean Left
Factuality
To view factuality data please Upgrade to Premium