logo

Prolific Microsoft 0-day hunter drops CrowdStrike Falcon exploit PoC

ID: 33434c15-7391-56a9-abb3-7eb835910bc3

STIX ID: report--33434c15-7391-56a9-abb3-7eb835910bc3

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2026-09-03

Date Updated: 2026-09-05

...
...

A prolific zero-day researcher known as Nightmare Eclipse published PoC exploits for multiple endpoint/security products, including a CrowdStrike Falcon privilege-escalation bypass (FalconFlank) that abuses the Microsoft Office suspicious-macro removal feature, as well as PoCs for Kaspersky (HardBreacher), Avast (PrettyPrague) and an Nvidia memory-corruption bug; vendors have begun investigations and some fixes or mitigations are referenced.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.