Nightmare-Eclipse Drops Yet Another Microsoft Exploit, RoguePlanet
ID: e6134bae-7596-54a6-9cf5-75eb15efb361
STIX ID: report--e6134bae-7596-54a6-9cf5-75eb15efb361
Feed Name: Dark Reading
A researcher calling themselves "Nightmare-Eclipse" released a proof-of-concept exploit (RoguePlanet) for a Windows Defender zero-day that leverages a race condition to potentially spawn SYSTEM-level command shells. The report places this disclosure in the context of a multi-month feud with Microsoft involving several previous PoC releases, notes Microsoft’s public condemnation and threat of legal action, and warns that such public PoCs increase risk to customers and may be exploited in the wild.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
