Microsoft just released Security Bulletin MS02-002, which reveals that administrators in one Windows 2000 or Windows NT 4.0 domain can elevate their privileges in a trusted domain without the permission of administrators in the trusted domain. Microsoft has provided Security Identifier (SID) Filtering, a way in which this type of unauthorized elevation can be prevented.