Skip to content

CVE-2020-1472 - Vulnerability Details

CVE

Threat entity extracted from intelligence sources

Frequency
7
occurrences
First Seen
October 30, 2025
Last Seen
August 12, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Operation Escaneo is a coordinated cyberattack attributed to the MexicanMafia group, targeting critical infrastructure across Latin America, primarily Mexico. The campaign, which spanned from 2025 to 2026, utilized sophisticated tools including a proprietary reconnaissance engine named Kimera and ex...

In 2026, Iranian APT groups, notably Cavern Manticore and OilRig, have intensified cyber operations against Israeli organizations, primarily in the IT and government sectors. Cavern Manticore employs a modular command-and-control (C2) framework built on a .NET foundation, utilizing various compilati...

German researchers have discovered a new vulnerability named Onelogon, which exploits the previously patched Zerologon flaw (CVE-2020-1472) in Microsoft's Active Directory. The Onelogon attack can be executed using two methods: a 24-bit brute force attack requiring a low-privilege account, and a mee...

As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses in securing their networks against evolving cyber threats.

Public Exploits

Checking GitHub for proof-of-concept code…