LDAP is a technology platform tracked across 9 threat clusters and 11 intelligence report mentions on ThreatCluster. First observed January 5, 2026; most recent activity June 30, 2026.
LDAP (Lightweight Directory Access Protocol) is a directory service protocol used to access and manage distributed user and resource information, commonly for authentication and authorization via directories like Active Directory or OpenLDAP. Because many enterprises rely on LDAP-based login and privilege management, vulnerabilities in LDAP handling or in devices that implement LDAP authentication can lead to remote access compromises and data exposure. The recent Fortinet firewalls article illustrates how flaws in authentication mechanisms on network appliances can have broad impact on LDAP-enabled environments.
A wave of attacks exploiting CVE-2024-12802, an authentication bypass vulnerability in SonicWall SSL VPN appliances, began in February 2026. Despite a firmware patch issued in 2025, attackers were able to bypass…
On March 10, 2026, Fortinet released a security advisory addressing eleven vulnerabilities in its core products, including a high-severity stack-based buffer overflow in FortiManager (CVE-2025-54820) that allows remote…
SUSE has issued multiple important updates addressing critical vulnerabilities in the Multi-Linux Manager and Salt software. The vulnerabilities, identified as CVE-2026-31958, CVE-2026-27448, and CVE-2026-27459, could…
A critical security update has been issued for the Fedora bind-dyndb-ldap package, addressing CVE-2025-13878. This vulnerability involves incorrect length checks for BRID and HHIT records, which could potentially lead…
More than 10,000 Fortinet firewalls remain exposed to a critical two-factor authentication bypass vulnerability (CVE-2020-12812) that has been actively exploited. This flaw, first disclosed in July 2020, continues to…
AISLE has launched Snapshot, an on-premises AI vulnerability scanner designed for regulated enterprises. This tool allows organizations to maintain control over their source code and security data while scanning for…
Fedora has released security updates for the Python 3.9 package, addressing critical command injection vulnerabilities. The updates affect developers using Fedora 42 and Fedora 43, with fixes for CVE-2026-1299,…
On June 29, 2026, Offensive Security released Kali Linux 2026.2, introducing nine new tools and significant improvements to VM boot times. The update includes enhancements to the GNOME 50 and KDE Plasma 6.6 desktop…
On May 7, 2026, two updates for Postfix were released, addressing vulnerabilities in versions 3.6.4 and 3.8.6. The updates include support for various database maps such as CDB, LDAP, LMDB, MySQL, and PCRE. Users of…