PulseAugur
EN
LIVE 20:13:55

Nightmare Eclipse releases new Windows zero-day exploits targeting Defender and BitLocker

A cybersecurity researcher known as Nightmare Eclipse has released two new exploits targeting Microsoft Windows systems. The first, RoguePlanet, is a local privilege escalation exploit that leverages a vulnerability in Windows Defender to gain SYSTEM user access, even on fully patched systems. The second exploit, GreatXML, bypasses BitLocker encryption under specific conditions, requiring an attacker to place crafted files on the Windows recovery partition and trigger a Defender Offline Scan. AI

IMPACT New exploits highlight ongoing vulnerabilities in widely used operating systems, potentially impacting enterprise security and data protection.

RANK_REASON This is a release of exploits targeting existing software, not a new product or frontier model.

Read on Tom's Hardware →

AI-generated summary · Google Gemini · from 1 sources. How we write summaries →

Nightmare Eclipse releases new Windows zero-day exploits targeting Defender and BitLocker

COVERAGE [1]

  1. Tom's Hardware TIER_1 English(EN) · Bruno Ferreira ·

    Microsoft's bug-hunting nemesis extends vendetta with more zero-day attacks — Nightmare Eclipse publishes RoguePlanet and GreatXML local privilege escalation exploits

    Nightmare-Eclipse's vendetta against Microsoft and Windows continues apace — researcher publishes RoguePlanet and GreatXML local privilege escalation zero-day exploits