Skip to content

// #toctou

1 article

🛡️ SecOps

BlueHammer Windows LPE Zero-Day Gives Attackers SYSTEM Access — No Patch Available

A publicly disclosed zero-day local privilege escalation vulnerability in Windows Defender's signature-update mechanism allows any authenticated user to escalate to SYSTEM. Named BlueHammer by researchers at Cyderes, the flaw has a working public exploit and no Microsoft patch as of publication. Security teams should implement interim mitigations immediately.

#windows +8