Kerberos is a technology platform tracked across 4 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed December 9, 2025; most recent activity July 14, 2026.
Kerberos is a widely used network authentication protocol that issues time-limited tickets to access services, relying on a Key Distribution Center (KDC) to validate identities in Windows, Linux, and other environments. The SUSE advisory describes a critical privilege-escalation vulnerability (CVE-2025-11561) within the Kerberos stack, underscoring Kerberos as a high-value attack surface for actors seeking elevated access in affected systems.
A critical vulnerability in OpenSSH has been identified, affecting Ubuntu systems, particularly version 16.04. The flaw arises from improper handling of file permissions when downloading files as root using the legacy…
On June 9, 2026, Microsoft released its largest Patch Tuesday update, addressing 206 vulnerabilities, including three zero-day flaws. Among the critical vulnerabilities, 32 were rated as critical, with 28 classified as…
SUSE has released an advisory for a critical privilege escalation vulnerability, CVE-2025-11561, affecting AD-joined Linux systems due to a default Kerberos configuration issue. The update includes a fix for this…
On July 13, 2026, three new versions of OpenSSH were released, specifically 1:10.2p1-2ubuntu3.4, 1:8.9p1-3ubuntu0.16, and 1:9.6p1-3ubuntu13.18. These updates include various security features and enhancements for the…