Exploiting Ghost SPNs and Kerberos Reflection for SMB Server Privilege Elevation
semperis.com | blog | #active-directory | #privilege-escalation | #kerberos | #smb | #spn | #cve-2025-58726
Summary
Ghost SPNs and Kerberos reflection still yield remote SYSTEM access on SMB servers even after the CVE-2025-33073 fix — research behind CVE-2025-58726, and why SMB signing remains critical.
- Published
- Collected
Skip to content