CPE
low
advisory
Information Disclosure Vulnerability in Microsoft 365 Copilot
1 TTP 1 CVEA vulnerability identified as CVE-2024-38148 in Microsoft 365 Copilot allows remote, unauthenticated attackers to potentially access unauthorized sensitive information within the service environment.
365 Copilot
information-disclosure
cloud-security
saas
1t
1c
medium
advisory
Privilege Escalation Vulnerability in Microsoft Windows Package Manager
1 CVEA local privilege escalation vulnerability in the Microsoft Windows Package Manager allows an authenticated local attacker to gain elevated privileges on the host system.
Windows Package Manager
privilege-escalation
windows
vulnerability
1c
high
advisory
DNS Kerberos Coercion Attempt Detection
3 rules 3 TTPs 4 CVEs 4 IOCsThis brief details the detection of DNS-based Kerberos coercion attacks, where adversaries inject marshaled credential structures into DNS records to spoof SPNs and redirect authentication, as seen in CVE-2025-33073, using Suricata and Sysmon event ID 22.
PoC
Fortinet edge appliances +38
kerberos
coercion
dns
cve-2025-33073
3r
3t
4c
4i
updated