Kerberos — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
5
occurrences
First Seen
December 9, 2025
Last Seen
August 29, 2026

Kerberos is a widely used network authentication protocol that issues time-limited tickets to access services, relying on a Key Distribution Center (KDC) to validate identities in Windows, Linux, and other environments.

Overview

Kerberos is a widely used network authentication protocol that issues time-limited tickets to access services, relying on a Key Distribution Center (KDC) to validate identities in Windows, Linux, and other environments. The SUSE advisory describes a critical privilege-escalation vulnerability (CVE-2025-11561) within the Kerberos stack, underscoring Kerberos as a high-value attack surface for actors seeking elevated access in affected systems.

Related Threat Clusters

Recent Intelligence Reports

  • High-Severity MongoDB Driver and BI Connector Flaws Require Immediate Patching Mallory Threat Intelligence Stories / 7h CVE-2026-81532 was published as a high-severity improper-bounds-checking vulnerability in the BI Connector ODBC driver. MongoDB Connector for BI's CVE-2026-77586 was published as a high-severity flaw in which unescaped collection, field, or index names can inject SQL into generated SHOW CREATE output that is later replayed. — mallory.ai · August 29, 2026
  • Over 500 Critical Infrastructure Organizations Hit by Medusa Ransomware — Infosecurity-Magazine · August 19, 2026
  • 1:10.2p1-2ubuntu3.4 — launchpad.net · July 14, 2026
  • Microsoft Patch Tuesday June 2026: Record 208 CVEs, Wormable Kernel Flaw Demands Patching — Techtimes · June 10, 2026
  • SUSE: Critical Privilege Escalation CVE-2025-11561 Advisory 2025:21084 — Linuxsecurity · December 9, 2025

CVSS v3.1 Breakdown