Security Researcher Publishes New Windows Zero-Day Bug Amid Tensions with Microsoft
A security researcher has published details of a new vulnerability in Windows that allows hackers to gain system-wide access, despite facing a legal threat from Microsoft over the release of previously unknown software flaws.
The bug, dubbed ShieldBreak, takes advantage of a flaw in Windows Defender, allowing the hacker to escalate their permissions from a low-level user to full access to the device and its data. The bug works on Windows 10, Windows 11 (including the latest 25H2 version), and Windows Server 2025.
The researcher, Nightmare Eclipse, published the proof-of-concept exploit as a Windows app, requiring the user to run the app to exploit the bug. Security researcher Will Dormann verified that the bug works and that Windows Defender must be enabled for the exploit to work.