CVE Tools
Back to feed
Exploited in the wild Active Directory Certificate Services (AD CS) privilege-escalation Microsoft

Inside AD CS Escalation: Unpacking Advanced Misuse Techniques and Tools

Palo Alto Unit 42·By Stav Setty, Tom Fakterman, Shachar Roitman··18 min read

Executive Summary

Active Directory Certificate Services (AD CS) is a foundational component of Windows enterprise infrastructure, responsible for managing public key infrastructure (PKI) and issuing certificates that enable authentication and encryption across networks. Despite its critical role in the enterprise identity infrastructure, AD CS is often undermined by insecure default configurations and design complexities, resulting in exploitable attack surfaces. Due to misconfigured templates and overly permissive enrollment rights, AD CS has emerged as a high-impact, under-monitored vector for privilege escalation and unauthorized identity impersonation in modern environments.…

Continue reading on Palo Alto Unit 42