Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Exploiting Ghost SPNs and Kerberos Reflection for SMB Server Privilege Elevation

Summary

Ghost SPNs and Kerberos reflection still yield remote SYSTEM access on SMB servers even after the CVE-2025-33073 fix — research behind CVE-2025-58726, and why SMB signing remains critical.
Published
Collected

original ↗