Skip to content
Threat Feed

CPE

Cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:*

5 briefs RSS
medium advisory

Privilege Escalation Vulnerability in Microsoft Windows Package Manager

A local privilege escalation vulnerability in the Microsoft Windows Package Manager allows an authenticated local attacker to gain elevated privileges on the host system.

Windows Package Manager privilege-escalation windows vulnerability
1c
critical threat

August 2026 Microsoft Security Update Analysis

Microsoft's August 2026 security release addresses 415 vulnerabilities, including a zero-day (CVE-2026-68820) exploited in the wild that enables local privilege escalation in the Windows Ancillary Function Driver for WinSock.

exploited Windows +7 vulnerability-management patch-tuesday privilege-escalation
1t 5c updated
medium advisory

Suspicious Child Processes of consent.exe

Detection of unauthorized child process creation by the Windows UAC consent.exe binary, a common indicator of UAC bypass and privilege escalation activity.

Windows privilege-escalation uac-bypass
1r 3t 1c
high threat

Microsoft Security Updates — August 2026

Roundup of Microsoft security advisories published in August 2026.

roundup
46c updated
high advisory

DNS Kerberos Coercion Attempt Detection

This brief details the detection of DNS-based Kerberos coercion attacks, where adversaries inject marshaled credential structures into DNS records to spoof SPNs and redirect authentication, as seen in CVE-2025-33073, using Suricata and Sysmon event ID 22.

PoC Fortinet edge appliances +38 kerberos coercion dns cve-2025-33073
3r 3t 4c 4i updated