DiscoverSANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)SANS Stormcast Thursday, August 14th, 2025: Equation Editor; Kerberos Patch; XZ-Utils Backdoor; ForitSIEM/FortiWeb patches
SANS Stormcast Thursday, August 14th, 2025: Equation Editor; Kerberos Patch; XZ-Utils Backdoor; ForitSIEM/FortiWeb patches

SANS Stormcast Thursday, August 14th, 2025: Equation Editor; Kerberos Patch; XZ-Utils Backdoor; ForitSIEM/FortiWeb patches

Update: 2025-08-14
Share

Description



CVE-2017-11882 Will Never Die

The (very) old equation editor vulnerability is still being exploited, as this recent sample analyzed by Xavier shows. The payload of the Excel file attempts to download and execute an infostealer to exfiltrate passwords via email.

https://isc.sans.edu/diary/CVE-2017-11882%20Will%20Never%20Die/32196

Windows Kerberos Elevation of Privilege Vulnerability

Yesterday, Microsoft released a patch for a vulnerability that had already been made public. This vulnerability refers to the privilege escalation taking advantage of a path traversal issue in Windows Kerberos affecting Exchange Server in hybrid mode.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-53779

Persistent Risk: XZ Utils Backdoor Still Lurking in Docker Images

Some old Debian Docker images containing the xz-utils backdoor are still available for download from Docker Hub via the official Debian account.

https://www.binarly.io/blog/persistent-risk-xz-utils-backdoor-still-lurking-in-docker-images

FortiSIEM / FortiWeb Vulnerablities

Fortinet patched already exploited vulnerabilities in FortiWeb and FortiSIEM

https://fortiguard.fortinet.com/psirt/FG-IR-25-152

https://fortiguard.fortinet.com/psirt/FG-IR-25-448
Comments 
In Channel
loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

SANS Stormcast Thursday, August 14th, 2025: Equation Editor; Kerberos Patch; XZ-Utils Backdoor; ForitSIEM/FortiWeb patches

SANS Stormcast Thursday, August 14th, 2025: Equation Editor; Kerberos Patch; XZ-Utils Backdoor; ForitSIEM/FortiWeb patches

Dr. Johannes B. Ullrich