Frequency
8
occurrences
First Seen
January 15, 2026
Last Seen
September 8, 2026
PetitPotam is a Windows NTLM relay attack technique that exploits the MS-EFSRPC interface to coerce a target to authenticate to an attacker-controlled service, enabling relay-based lateral movement and potential domain compromise without stolen credentials.
Overview
Recent Events
Relationships
The full threat graph for this incident is free in the 7-day Starter trial.
Create free accountNo card · 30 seconds
Related Clusters (7)
Critical CVE-2026-62911 Exposes 22,000 Exchange Servers to Remote Code Execution
Sep 1·15 sources
72
1 / 2
Related Articles (8)
1 / 2