Chaotic Eclipse discloses MiniPlasma zero-day, suggesting a missing or undone 2020 Windows security fix
ID: c7da60f4-9ae3-5eeb-85bd-9da529697b7f
STIX ID: report--c7da60f4-9ae3-5eeb-85bd-9da529697b7f
Feed Name: Security Affairs
Threat Score
MiniPlasma is a newly publicized Windows SYSTEM privilege escalation zero-day disclosed by a researcher known as Chaotic Eclipse (Nightmare-Eclipse). The flaw targets the cldflt.sys Cloud Files Mini Filter Driver (HsmOsBlockPlaceholderAccess), is linked to CVE-2020-17103, and reportedly works on fully patched Windows 11 with a weaponized proof-of-concept that spawns a SYSTEM shell; the disclosure raises concerns about patch regressions and the risks of publishing exploit code.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
