logo

New Windows Event Log zero-day flaw gets unofficial patches

ID: c484c66e-623c-5d0f-b0b2-0b322521239a

STIX ID: report--c484c66e-623c-5d0f-b0b2-0b322521239a

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-02-01

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

EventLogCrasher is a newly disclosed Windows zero-day affecting many client and server versions that lets authenticated attackers remotely crash the Event Log service across a domain (including domain controllers), potentially preventing SIEM/IDS systems from ingesting new events; a PoC was published and 0patch released free micropatches while Microsoft has not issued an official patch.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.