Kerberos Reflection Bypass CVE-2026-26128 Gets Public PoC Exploit
ID: 2dbc1ef1-aa80-5e2e-9792-04d8ed77c9fb
STIX ID: report--2dbc1ef1-aa80-5e2e-9792-04d8ed77c9fb
Feed Name: securityonline.info
Threat Score
**TL;DR:** Synacktiv disclosed a Kerberos reflection bypass (CVE-2026-26128) that allows a domain user to escalate to SYSTEM by relaying machine Kerberos tickets; a public proof-of-concept exists and Microsoft patched the issue in March 2026 — apply the update and enforce SMB signing and channel binding immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
