Nauja nulinės dienos spraga apeina „Microsoft Defender“ pataisą „Windows“ sistemose

15 šaltiniai
  • Nightmare Eclipse išleido kenkėjišką kodą ShieldBreak, kuris apeina „Microsoft“ liepos mėnesio pataisą, skirtą „Defender“ teisių išplėtimo spragai ištaisyti, praneša „The Hacker News“.
  • Saugumo analitikas Will Dormann antradienį patvirtino, kad šis kodas veikia visiškai atnaujintose „Windows 11“ ir „Windows Server“ sistemose, kuriose įjungta „Defender“ programa.
  • Šis išleidimas yra kelis mėnesius trunkančio ginčo dėl „Microsoft“ pažeidžiamumų atskleidimo praktikos dalis: CISA šią savaitę taip pat atkreipė dėmesį į kitą aktyviai išnaudojamą „Windows“ nulinės dienos spragą.
Šaltiniai (15)
  1. 1 ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access thehackernews.com
  2. 2 New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges www.bleepingcomputer.com
  3. 3 Nightmare-Eclipse: six zero-days, six weeks and one big grudge blog.barracuda.com
  4. 4 Nightmare-Eclipse Tooling Seen in Real-World Intrusion - Huntress www.huntress.com
  5. 5 Nightmare Eclipse: Seven Windows Zero-Days fortifiedhealthsecurity.com
  6. 6 ‼️ Microsoft patched RoguePlanet. Now the researcher ... www.instagram.com
  7. 7 Microsoft's worst 'Nightmare' unleashes BitLocker bypass 0-day www.theregister.com
  8. 8 ShieldBreak: New Windows Zero-Day Bypasses Microsoft's ... securityaffairs.com
  9. 9 Microsoft vs Chaotic Eclipse: three zero-days now actively exploited www.reddit.com
  10. 10 2026-50656 patch. The underlying flaw can lead to ... www.facebook.com
  11. 11 Patch Tuesday security updates August 2026 fix 400 ... www.youtube.com
  12. 12 Nightmare Eclipse bypasses Microsoft patch with new Defender ... cybernews.com
  13. 13 "RoguePlanet" Zero Day MS Defender Privilege Escalation kudelskisecurity.com
  14. 14 BlueHammer: Inside the Windows Zero-Day www.cyderes.com
  15. 15 New Microsoft Defender 'ShieldBreak' zero-day grants ... www.threads.com