logo

Windows Remote Desktop Services 0-Day Vulnerability Exploited in the Wild to Escalate Privileges

ID: 67e81727-f324-52d9-a608-ac43df7a3459

STIX ID: report--67e81727-f324-52d9-a608-ac43df7a3459

Feed Name: cybersecurityNews.com

Threat Score
85/100

Date Published: 2026-02-11

Date Updated: 2026-04-21

Author: Guru Baran

...
...

The report details CVE-2026-21533, a high-severity RDS privilege escalation zero-day actively exploited to gain SYSTEM privileges by modifying service registry keys; it lists affected Windows Server and Windows 10/11 builds, provides mitigation guidance (disable RDS if unused, deploy patches and EDR, monitor registry changes), and notes Microsoft released fixes in the February 2026 Patch Tuesday while CrowdStrike observed exploit binaries in the wild.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.