ShieldBreak Exploit Bypasses RoguePlanet Patch on Windows Systems
A security researcher known as Chaotic Eclipse has discovered a new exploit that can bypass Microsoft's patch for the RoguePlanet vulnerability, allowing an attacker to escalate their privileges on a Windows system.
The proof-of-concept exploit, called ShieldBreak, targets Windows 10, 11 (including version 25H2), and Windows Server 2025. It requires that a victim runs a specially crafted Windows application for the attack to work, which means it is not an automatically triggered attack.
Much like RoguePlanet, ShieldBreak also allows an attacker to gain full access to a system after local execution. This makes it possible for attackers to install programs, read data, manipulate security mechanisms, or download further malware.