ShieldCrash Zero-Day Bypasses Microsoft Defender Patch and Grants SYSTEM Access
An anonymous security researcher known as Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named ShieldCrash on September 9, 2026. The exploit bypasses a recently patched Defender flaw called ShieldBreak and grants SYSTEM…
CrowdStrike FalconFlank Zero-Day EDR Platform Exploited
September 4, 2026 An anonymous security researcher operating under the handle “Nightmare Eclipse” has released a zero-day privilege escalation exploit targeting CrowdStrike Falcon, the widely deployed endpoint detection and response (EDR)…
Check Point Researchers Weaponize Microsoft Defender Remediation Driver for Kernel-Level Attacks
August 23, 2026 Check Point Research has disclosed a technique that weaponizes Microsoft Defender’s own signed boot-time remediation driver, BTR.sys, to execute arbitrary kernel-level file and registry operations on fully patched Windows systems.…
Plug and Pwn Attack: Fake USB Devices Hijack Windows Plug and Play for SYSTEM Privileges
August 13, 2026 Researchers have unveiled Plug and Pwn, a new class of attacks that abuses Windows Plug and Play to install vulnerable vendor software and gain SYSTEM privileges with little or no user interaction. First demonstrated at DEF CON 34, the…
Microsoft July 2026 Patch Tuesday Fixes Record 622 Flaws: Two Zero-Days Under Active Attack | SharePoint & AD FS
July 15, 2026 Microsoft shipped its largest Patch Tuesday on record today. The July 2026 release patches an unprecedented 622 CVEs across Windows, Office, Edge, SharePoint, Azure, SQL Server, and more. Two of those fixes close zero-day vulnerabilities…
CVE-2026-41089: Critical Windows Netlogon RCE Under Active Exploit
June 2, 2026 A critical remote code execution vulnerability in Windows Netlogon is now under active exploitation in the wild. The flaw, tracked as CVE-2026-41089, carries a CVSS score of 9.8 and allows unauthenticated attackers to execute code on Windows…