Back to all news
Security

FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator Credentials

The Hacker News·September 8, 2026·1 min read
FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator Credentials

Red Hat disclosed a FreeIPA vulnerability chain allowing unauthenticated clients to forge Kerberos identities and gain administrator rights. The attack requires exploiting a second flaw in the underlying 389 Directory Server database. Patches are expected to address the critical privilege escalation path.

Read at The Hacker News
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store