'I was not bluffing Microsoft, and I'm doing it again': apparently disgruntled researcher leaks worrying Windows zero-day security flaw

‘I was not bluffing Microsoft, and I’m doing it again’: apparently disgruntled researcher leaks worrying Windows zero-day security flaw | Daily Reports Online

Share


  • Researcher leaked BlueHammer Windows exploit code
  • Flaw enables local privilege escalation to SYSTEM
  • Microsoft urges coordinated disclosure, exploit reliability uncertain

A security researcher, seemingly unsatisfied with how Microsoft handles vulnerability disclosures, has apparently decided to leak the exploit code for a zero-day flaw in the Windows operating system (OS).


In a short post published on their Blogspot page, a person with the alias Chaotic Eclipse leaked the code for a bug called BlueHammer, a privilege escalation flaw that allows local attackers to gain SYSTEM or elevated admin permissions on the target endpoint.



Similar Posts