New Windows Event Log zero-day flaw gets unofficial patches
ID: c484c66e-623c-5d0f-b0b2-0b322521239a
STIX ID: report--c484c66e-623c-5d0f-b0b2-0b322521239a
Feed Name: Bleeping Computer
Threat Score
EventLogCrasher is a newly disclosed Windows zero-day affecting many client and server versions that lets authenticated attackers remotely crash the Event Log service across a domain (including domain controllers), potentially preventing SIEM/IDS systems from ingesting new events; a PoC was published and 0patch released free micropatches while Microsoft has not issued an official patch.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
