Cybersecurity Threats Escalate with CrowdStrike and Google Under Fire
Cybersecurity threats have been on the rise this week, with several high-profile incidents affecting major players in the industry.
The first alarm bell was sounded by security researcher Nightmare-Eclipse, who published a proof-of-concept exploit called FalconFlank targeting CrowdStrike's Falcon Sensor. The attack takes advantage of an unverified local privilege escalation vulnerability in Windows 11 and Server 2025 systems running Phase 3 Optimal Protection.
CrowdStrike has issued a warning to customers to disable the Microsoft Office File Suspicious Macro Removal Windows policy setting while retaining Cloud Anti-malware protection. The company is actively investigating the claims, but defenders are advised to review the FalconFlank Tech Alert within the customer portal for ongoing updates.
Meanwhile, Google has rolled out an emergency desktop update to address a high-severity zero-day vulnerability in its V8 JavaScript engine that is actively exploited in the wild. The bug, tracked as CVE-2026-85046, allows for memory corruption or arbitrary code execution within the browser process.