Alert: Update Windows Netlogon Remote Protocol Now, says Homeland Security - eManaged Pty Ltd Blog | Mildura, Victoria | eManaged Pty Ltd


About Us

IT Services

Understanding IT



Contact Us


Business Continuity during a Disaster

eManaged Blog

Alert: Update Windows Netlogon Remote Protocol Now, says Homeland Security

Alert: Update Windows Netlogon Remote Protocol Now, says Homeland Security

The Cybersecurity and Infrastructure Security Agency (CISA) has released an emergency directive concerning a critical exploit known as Zerologon, that affects servers running Windows Server operating systems that needs to get patched as soon as possible.

What’s the Exploit and Who Does It Affect?

The vulnerability in the CISA’s emergency directive affects all supported Windows Server operating systems. It’s been named Zerologon, and If left unpatched, it could allow an unauthenticated threat actor to gain access to a domain controller and completely compromise your network’s Active Directory services. The vulnerability gets its name because all the hacker has to do is send a series of Netlogon messages with the input fields filled with zeroes to gain access. 

Once in, this essentially gives the hacker a lot of control over your network, and it’s a publicly available exploit (since Microsoft has released a patch for it) which means cybercriminals will be taking advantage of it. The attacker doesn’t need any user credentials to use this exploit.

If your business network is running Windows Server, you need to have updates applied to your servers to ensure that this vulnerability is patched. If you aren’t actively keeping all the devices on your network maintained with the latest updates and security patches, you are essentially leaving the front door wide open.

Not having this patch installed will also affect compliance standards and of course, leave your business and your data at high-risk of a breach. It is highly recommended to apply this patch today, as soon as possible, regardless of the industry you are in. We can’t stress this enough. Apply this patch as soon as humanly possible.

The Good News

If you have an active managed IT services agreement with eManaged that covers the maintenance of your Windows Servers, you have likely already received the patch, or will be having it installed today. The patch was released by Microsoft as part of their August 2020 Patch Tuesday Update.

If you don’t have an agreement with us, or you aren’t sure if your agreement covers fixing the Zerologon vulnerability, we urge you to reach out to us by calling 1300 363 308. This is definitely not something you want to risk.

The Department of Homeland Security and the US Cybersecurity and Infrastructure Security Agency don’t issue emergency directives casually. This needs to be taken seriously for all businesses and organisations.

If you need help, or you are unsure about how to protect your organisation from the Zerologon vulnerability, don’t hesitate to reach out to eManaged at 1300 363 308.

How the IoT Can Be Used to Help Your Business Proc...
Cybercrime Spiking During the Pandemic


No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Friday, October 30, 2020

Captcha Image

By accepting you will be accessing a service provided by a third-party external to

Latest Blog

Email—it’s a business tool that we all use and rely on, but (if we’re being honest) it can be a pain to manage properly. Unfortunately, this can also depreciate the value of the solution to its users. To help prevent these problems, we want...

Contact Us

Learn more about what eManaged
can do for your business.

747 Fifteenth Street
Mildura, Victoria 3500

Account Login