DFIR Radar[verified]@DFIR_RadarDisclosure
The tweet announces CVE‑2026‑20929, detailing its high‑severity nature and exploitation vector (Kerberos relay via DNS CNAME abuse), while noting CrowdStrike’s detection of anomalous authentication patterns.
DNSAudit.io[verified]@dnsauditDisclosure
The article announces CVE‑2026‑20929, explaining how DNS CNAME abuse can transform Kerberos into a relay vector and outlines detection strategies, but no exploits, patches, or active attack reports are mentioned.
Tech4Index[verified]@tech4indexGeneral
Researchers have published detection methods for CVE-2026-20929, a Kerberos relay vulnerability via CNAME abuse, but the post provides no PoC, exploit code, patch, or evidence of active exploitation.
DirectoryRanger@DirectoryRangerGeneral
The article highlights detection of CVE‑2026‑20929, a Kerberos authentication relay via CNAME abuse, providing technical details but no evidence of exploitation, PoC, or patch information.
NerdieNews@NewsNerdiePatch
The tweet announces CVE-2026-20929, highlights its Kerberos-based CNAME abuse leading to authentication relay attacks, and urges users to apply the patch to prevent unauthorized access.
Alexei Belous@AlexeiBelousDisclosure
The text discloses technical details of CVE-2026-20929, describing a Kerberos CNAME relay vulnerability, detection methods, and potential attack chains, without presenting a PoC, exploit code, or patch information.
ThreatLevel@ThreatLevelLabsDisclosure
The tweet announces CVE-2026-20929, a Windows HTTP.sys vulnerability that permits Kerberos credential relay via DNS CNAME, rated CVSS 7.5, but it provides no PoC, exploit, or mitigation information.