CVE Tools
Back to feed
PoC public Microsoft Defender privilege-escalation Microsoft mobile

Появился новый 0-day-эксплоит ShieldCrash для повышения привилегий через Microsoft Defender

Хакер (xakep.ru)·By Мария Нефёдова··2 min read
CVE Tools coverage

Security researcher Nightmare Eclipse has published a proof-of-concept exploit named ShieldCrash that targets a zero-day flaw in Microsoft Defender. This new technique allows attackers to read arbitrary files with SYSTEM privileges by circumventing the recent patch for the ShieldBreak vulnerability (CVE-2026-69414). Although Microsoft released version 1.1.26080.3 of the Malware Protection Engine last week, the update was found to be incomplete, leaving the underlying issue partially exposed. The exploit currently functions on fully updated instances of Windows 10, Windows 11, and Windows Server, though it does not yet enable arbitrary file writes or full shell access.

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store