logo

Kerberos Reflection Bypass CVE-2026-26128 Gets Public PoC Exploit

ID: 2dbc1ef1-aa80-5e2e-9792-04d8ed77c9fb

STIX ID: report--2dbc1ef1-aa80-5e2e-9792-04d8ed77c9fb

Feed Name: securityonline.info

Threat Score
72/100

Date Published: 2026-07-06

Date Updated: 2026-08-06

Author: Do Son

...
...

**TL;DR:** Synacktiv disclosed a Kerberos reflection bypass (CVE-2026-26128) that allows a domain user to escalate to SYSTEM by relaying machine Kerberos tickets; a public proof-of-concept exists and Microsoft patched the issue in March 2026 — apply the update and enforce SMB signing and channel binding immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.