PulseAugur
EN
LIVE 17:32:58

Windows Defender vulnerability allows privilege escalation via file rewrite

A newly discovered vulnerability named RedSun allows attackers to gain administrative privileges on Windows 11, 10, and Server systems. This exploit leverages a peculiar behavior in Windows Defender where it rewrites malicious files with cloud tags instead of removing them. By abusing this function, attackers can overwrite critical system files to achieve elevated access. AI

RANK_REASON Discovery of a specific vulnerability and exploit method.

Read on Hacker News — AI stories ≥50 points →

AI-generated summary · Google Gemini · from 1 sources. How we write summaries →

Windows Defender vulnerability allows privilege escalation via file rewrite

COVERAGE [1]

  1. Hacker News — AI stories ≥50 points TIER_1 English(EN) · airhangerf15 ·

    RedSun: System user access on Win 11/10 and Server with the April 2026 Update