Windows 11 KB5124008 Active Directory domain trust breakage
Service Disruption
Summary
Hide ▲
Show ▼
The Windows 11 KB5124008 security update is breaking Active Directory domain trust on some enterprise systems, preventing valid users from signing in after reboot. Microsoft is investigating the disruption, and affected machines may lose their secure channel with domain controllers. Some administrators have temporarily restored access by changing Machine Identity Isolation settings and repairing the secure channel.
Related Happenings
Windows Server Remote Desktop Services disruption after September 2026 cumulative updates
Service Disruption
H score0
First: 10.09.2026 23:34
Last: 10.09.2026 23:34
Sources 1
About this happening:
Windows Server Remote Desktop Services is experiencing a service disruption after the September 2026 cumulative updates, leaving some systems unable to accept new conn...
Windows Server Remote Desktop Services disruption after September 2026 cumulative updates
Service DisruptionAbout this happening: Windows Server Remote Desktop Services is experiencing a service disruption after the September 2026 cumulative updates, leaving some systems unable to accept new conn...
Latest development: 14.09.2026 23:52
Microsoft released out-of-band Windows updates on September 14, 2026, to fix Remote Desktop Services failures on affected Windows Server and Windows client systems after September 2026 security updates caused RDP connection and sign-in failures and, in some cases, unresponsive servers. The company also said it had previously provided Group Policy mitigations while it worked on a permanent fix.
Microsoft Windows passkey relay mitigation for CVE-2026-34348
Advisory/Mitigation
H score31
First: 10.08.2026 15:25
Last: 10.08.2026 15:25
Sources 1
About this happening:
Microsoft's CVE-2026-34348 mitigation for Windows Event Logging Service and the reported passkey relay assertions issue reduces exposure to replay-style authentication...
Microsoft Windows passkey relay mitigation for CVE-2026-34348
Advisory/MitigationAbout this happening: Microsoft's CVE-2026-34348 mitigation for Windows Event Logging Service and the reported passkey relay assertions issue reduces exposure to replay-style authentication...
Microsoft AD CS security update for CVE-2026-54121
Security Patch Release
H score34
First: 24.07.2026 17:15
Last: 24.07.2026 17:15
Sources 1
About this happening:
Certighost (CVE-2026-54121) is a Microsoft Active Directory Certificate Services (AD CS) vulnerability that lets a low-privileged Active Directory user abuse chase f...
Microsoft AD CS security update for CVE-2026-54121
Security Patch ReleaseAbout this happening: Certighost (CVE-2026-54121) is a Microsoft Active Directory Certificate Services (AD CS) vulnerability that lets a low-privileged Active Directory user abuse chase f...
Microsoft AD CS Certighost improper authorization flaw (CVE-2026-54121)
Vulnerability
H score37
First: 24.07.2026 17:15
Last: 24.07.2026 17:15
Sources 1
About this happening:
CVE-2026-54121 (Certighost) is a Microsoft Active Directory Certificate Services (AD CS) vulnerability that can let an authenticated attacker obtain a certificate for...
Microsoft AD CS Certighost improper authorization flaw (CVE-2026-54121)
VulnerabilityAbout this happening: CVE-2026-54121 (Certighost) is a Microsoft Active Directory Certificate Services (AD CS) vulnerability that can let an authenticated attacker obtain a certificate for...
Microsoft My Sign-Ins MFA outage
Service Disruption
H score25
First: 01.06.2026 14:40
Last: 01.06.2026 14:40
Sources 1
About this happening:
Microsoft is dealing with an ongoing outage that is blocking some users from setting up multi-factor authentication (MFA) and accessing My Sign-Ins. Affected users...
Microsoft My Sign-Ins MFA outage
Service DisruptionAbout this happening: Microsoft is dealing with an ongoing outage that is blocking some users from setting up multi-factor authentication (MFA) and accessing My Sign-Ins. Affected users...
Timeline
-
16.09.2026 23:39 2 articles · 1h ago
Microsoft investigates Windows 11 KB5124008 domain trust failures
Initial DisclosureMicrosoft is investigating reports that the Windows 11 KB5124008 security update is breaking domain trust relationships on some enterprise systems, preventing users with valid Active Directory credentials from logging in after reboot. Administrators say affected computers lose their secure channel with Active Directory after the update is installed and devices restart, and some reports link the failures to Windows Machine Identity Isolation in audit or enforcement mode.
Show sources
- Windows 11 KB5124008 update breaks domain trust for some users — www.bleepingcomputer.com — 16.09.2026 23:39
- Windows 11 KB5124008 update breaks domain trust for some users — www.bleepingcomputer.com — 16.09.2026 23:39