<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Netwrix Auditor - Latest News &amp; Reviews</title>
	<atom:link href="https://www.thetechoutlook.com/tag/netwrix-auditor/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.thetechoutlook.com/tag/netwrix-auditor/</link>
	<description>Daily Tech News, Interviews, Reviews and Updates</description>
	<lastBuildDate>Tue, 19 Jul 2022 09:47:35 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0</generator>

<image>
	<url>https://www.thetechoutlook.com/wp-content/uploads/2019/09/cropped-favicon-1-150x150.png</url>
	<title>Netwrix Auditor - Latest News &amp; Reviews</title>
	<link>https://www.thetechoutlook.com/tag/netwrix-auditor/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>New Netwrix Auditor Bug can allow Attackers to execute arbitrary code</title>
		<link>https://www.thetechoutlook.com/news/security/new-netwrix-auditor-bug-can-allow-attackers-to-execute-arbitrary-code/</link>
					<comments>https://www.thetechoutlook.com/news/security/new-netwrix-auditor-bug-can-allow-attackers-to-execute-arbitrary-code/#comments</comments>
		
		<dc:creator><![CDATA[Pavan Naidu]]></dc:creator>
		<pubDate>Sat, 16 Jul 2022 08:19:37 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Netwrix Auditor]]></category>
		<guid isPermaLink="false">https://www.thetechoutlook.com/?p=62502</guid>

					<description><![CDATA[<div style="margin-bottom:20px;"><img width="1200" height="650" src="https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11.jpg" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11.jpg 1200w, https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11-300x163.jpg 300w, https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11-1024x555.jpg 1024w, https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11-768x416.jpg 768w" sizes="(max-width: 1200px) 100vw, 1200px" /></div>
<p>Researchers have found details about a security vulnerability in the Netwrix Auditor application that, if exploited can lead to arbitrary code execution on affected devices. &#8220;Since this service is typically executed with extensive privileges in an Active Directory environment, the attacker would likely be able to compromise the Active Directory domain,&#8221; Bishop Fox said in an advisory [&#8230;]</p>
<p>The post <a href="https://www.thetechoutlook.com/news/security/new-netwrix-auditor-bug-can-allow-attackers-to-execute-arbitrary-code/">New Netwrix Auditor Bug can allow Attackers to execute arbitrary code</a> appeared first on <a href="https://www.thetechoutlook.com">The Tech Outlook</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div style="margin-bottom:20px;"><img width="1200" height="650" src="https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11.jpg" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" srcset="https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11.jpg 1200w, https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11-300x163.jpg 300w, https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11-1024x555.jpg 1024w, https://www.thetechoutlook.com/wp-content/uploads/2022/07/Untitled-design-2-11-768x416.jpg 768w" sizes="(max-width: 1200px) 100vw, 1200px" /></div><p>Researchers have found details about a security vulnerability in the Netwrix Auditor application that, if exploited can lead to arbitrary code execution on affected devices.</p>
<p>&#8220;Since this service is typically executed with extensive privileges in an Active Directory environment, the attacker would likely be able to compromise the Active Directory domain,&#8221; Bishop Fox <a href="https://bishopfox.com/blog/netwrix-auditor-advisory" target="_blank" rel="noopener">said</a> in an advisory published this week.</p>
<p>The auditor is an auditing and visibility platform that enables organizations to have a consolidated view of their IT environments, including Active Directory, Exchange, file servers, SharePoint, VMware, and other systems—all from a single console.</p>
<p>Netwrix, the company behind the software, has claimed more than 11,500 customers across over 100 countries, such as Airbus, Virgin, King&#8217;s College Hospital, and Credissimo, among others.</p>
<p>According to Hacker News, the flaw, which impacts all supported versions prior to 10.5, has been described as an insecure object deserialization, which takes place when untrusted user-controllable data is parsed to inflict remote code execution attacks.</p>
<div class="ad_two clear"></div>
<p>The root cause of the bug is an unsecured .NET remoting service that&#8217;s accessible on TCP port 9004 on the Netwrix server, enabling an actor to execute arbitrary commands on the server.</p>
<p>&#8220;Since the command was executed with NT AUTHORITY\SYSTEM privileges, exploiting this issue would allow an attacker to fully compromise the Netwrix server,&#8221; Bishop Fox&#8217;s Jordan Parkin said as per Hacker News.</p>
<h2>UPDATE FROM Netwrix</h2>
<p>Upon receiving the vulnerability report from Jordan Parkin of Bishop Fox, the Netwrix development team worked diligently to remediate it. On June 6, 2022, Netwrix released Netwrix Auditor 10.5 which included a fix for this vulnerability, and published a security advisory to its customers advising them of the risk and the need to upgrade. Netwrix thanks Mr. Parkin for his collaboration and coordinated disclosure of this vulnerability. Customers requiring assistance deploying Netwrix Auditor 10.5 should contact the support team via the customer web portal or by phone in the US at +1.888.638.9749.</p>
<div class="ad_two clear">
<div id="00000001-eef22c07-a8c3-40f7-9ed0-441dcda96e4f" class="_ap_apex_ad" data-section="00000001-eef22c07-a8c3-40f7-9ed0-441dcda96e4f" data-orig-id="967ecfad-bf6b-429e-9a39-9770c8b7d188" data-render-time="1657958076903" data-ap-network="adpTags" data-refresh-time="1657958683393" data-timeout="1523"></div>
</div>
<p>The post <a href="https://www.thetechoutlook.com/news/security/new-netwrix-auditor-bug-can-allow-attackers-to-execute-arbitrary-code/">New Netwrix Auditor Bug can allow Attackers to execute arbitrary code</a> appeared first on <a href="https://www.thetechoutlook.com">The Tech Outlook</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.thetechoutlook.com/news/security/new-netwrix-auditor-bug-can-allow-attackers-to-execute-arbitrary-code/feed/</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
			</item>
	</channel>
</rss>
