AuraTracer智迹闻
中文

EVENT DOSSIER

After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug | TechCrunch

2026-08-12 08:00 Cybersecurity 🔥 30.9 heat score
1sources
1days unfolding
30.9heat score
5mentions
SummaryAI generated

After receiving legal threats from Microsoft, security researcher Nightmare Eclipse released a new Windows zero-day vulnerability called ShieldBreak. This vulnerability exploits a flaw in Windows Defender, allowing attackers to elevate permissions from low-level users to full access to the device. It affects Windows 10, Windows 11 (including version 25H2), and Windows Server 2025. The researcher has released Windows applications designed to exploit this vulnerability and confirmed that it is effective only when Defender is enabled. Microsoft has not yet released a patch for ShieldBreak; although the previously released RoguePlanet vulnerability has been patched, Nightmare Eclipse stated that its latest exploit achieved complete bypass. A Microsoft spokesperson said the company is aware of the vulnerability and is investigating it.

Related eventsRELATED EVENTS
Key entitiesKEY ENTITIES
MicrosoftNightmare EclipseShieldBreakWill DormannWindows

Coverage · reports per dayLANGUAGE SPLIT

Entity relations
Microsoft × Nightmare E…1Microsoft × ShieldBreak1Microsoft × Will Dormann1Microsoft × Windows1Nightmare Eclipse × Shi…1Nightmare Eclipse × Wil…1

SignalsSIGNALS

Keyword heat
  • Microsoft1
  • Windows1
  • Nightmare Eclipse1
  • Will Dormann1
  • ShieldBreak1

All reports (1)SOURCES

T TechCrunch 归档 8月 p12 en 2026-08-12 08:00

After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug | TechCrunch

安全研究员 Nightmare Eclipse 在微软威胁采取法律行动后,发布了名为 ShieldBreak 的新 Windows 零日漏洞。该漏洞利用 Windows Defender 缺陷,允许黑客将权限从低级别用户提升至设备全访问权限,影响 Windows 10、Windows 11(含 25H2 版)及 Windows Server 2025。研究员已发布用于利用此漏洞的 Windows 应用程序,且研究员 Will Dormann 验证了该漏洞仅在 Defender 启用时有效。微软尚未发布针对 ShieldBreak 的补丁,此前发布的 RoguePlanet 漏洞虽已打补丁,但 Nightmare Eclipse 称其最新 exploit 实现了完全绕过。微软发言人表示公司已知晓该漏洞并正在调查…