News
Windows has four vulnerabilities that can render any device with this system useless
The good news is that, once these problems are known, they can be solved as soon as possible

- August 11, 2025
- Updated: August 11, 2025 at 3:56 PM

At the recent DEF CON 33 conference, researchers Yair and Shahak Morag from SafeBreach Labs presented a new and alarming class of denial of service (DoS) attacks, called Win-DoS Epidemic. This new research reveals four DoS vulnerabilities in Windows and a distributed denial of service (DDoS) threat that does not require clicks for activation. Attackers can paralyze critical systems, including Domain Controllers (DC), which could completely destabilize an organization.
A very serious problem to solve as soon as possible
DoS attacks focus on the uncontrolled consumption of resources, an approach that allows attackers to collapse any endpoint or Windows server. The most concerning technique, known as Win-DDoS, exploits a vulnerability in the Windows LDAP client reference process, allowing attackers to redirect DCs to a victim server and make them repeat that action indefinitely. This results in the creation of a massive and untraceable DDoS botnet, using public DCs around the world.
The implications of these findings are critical, as Domain Controllers are essential for authentication and resource management in organizational networks. A successful attack can mean that users are unable to access their resources, paralyzing daily operations. Additionally, researchers have identified three new DoS vulnerabilities that can be exploited without user interaction, affecting both servers and endpoints.
Despite Microsoft releasing patches for the LdapNightmare vulnerability, this new series of vulnerabilities emphasizes the need for organizations to review and strengthen their security postures, especially regarding internal systems like DCs. Continuous vigilance is essential to protect against these emerging threats.
Latest from Softonic
- The showrunner of Andor is preparing a new movie and for that he wants to include two key actors from the MCU
- Oracle may have a serious security issue on its hands that has not been confirmed
- James Gunn confirms that the Marvel and DC universes are more connected than you think
- If a game seems very difficult to you, science has a way for you to get through it and it's not by insisting like an animal
You may also like
- News
ProSpy and ToSpy: the latest spyware threats disguised as messaging applications
Read more
- News
Personalized ads are coming to Facebook and Instagram thanks to conversations with AI
Read more
- News
These are the new releases coming to Crunchyroll this fall
Read more
- News
Elon Musk asks followers to cancel their Netflix subscriptions
Read more
- News
The Russos share an image that could provide clues about the upcoming Avengers movie
Read more
- News
The queer dating reality show on Netflix has come to an end and will not have a third season
Read more