Vulnerabilities BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days Multiple espionage-motivated threat actors have adopted BlueMoon in opportunistic, rushed deployments. Ionut Arghire3 days ago
Vulnerabilities Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’ Dropped on Patch Tuesday, the exploit allows any user to spawn a shell with System privileges. Ionut ArghireAugust 13, 2026
Vulnerabilities Fresh Windows Zero-Day Exploited in North Korean Cyberattacks The bug allowed attackers to gain full control of the victims’ systems and deploy the ForestTiger backdoor. Ionut ArghireAugust 12, 2026
Endpoint Security Windows Bind Link Attacks Can Hide Malware From EDR Tools Bitdefender researchers show how Windows bind links can create conflicting filesystem views to hide malware from endpoint security products. Kevin TownsendJuly 15, 2026
Endpoint Security ‘GreatXML’ Zero-Day Exploit Bypasses BitLocker The PoC exploits Microsoft Defender’s offline scan to spawn a SYSTEM shell when rebooting in Recovery Mode. Ionut ArghireJune 11, 2026
Vulnerabilities New Windows Zero-Day Exploit ‘RoguePlanet’ Released Exploiting a race condition in Microsoft Defender, the exploit leads to local privilege escalation to SYSTEM. Ionut ArghireJune 10, 2026
Endpoint Security Microsoft Rolls Out Mitigations for ‘YellowKey’ BitLocker Bypass The exploitation is mitigated by preventing the FsTx Auto Recovery Utility from starting when the WinRE image launches. Ionut ArghireMay 20, 2026
Endpoint Security Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks Attackers are increasingly abusing Microsoft’s decades-old MSHTA utility to stealthily deliver stealers, loaders, and persistent malware through phishing, fake software downloads, and LOLBIN-based attack... Kevin TownsendMay 19, 2026
Vulnerabilities Researcher Drops MiniPlasma Windows Exploit for Unpatched 2020 CVE The researcher dropped the MiniPlasma exploit that uses the original proof-of-concept (PoC) code targeting the bug. Ionut ArghireMay 18, 2026
Vulnerabilities Researcher Drops YellowKey, GreenPlasma Windows Zero-Days YellowKey is a BitLocker bypass that requires physical access. GreenPlasma enables elevation of privileges to System. Ionut ArghireMay 14, 2026
Vulnerabilities Microsoft Patches 137 Vulnerabilities Fresh security updates resolve critical flaws in Azure, Windows, Dynamics 365, and the SSO Plugin for Jira & Confluence. Ionut ArghireMay 12, 2026
Vulnerabilities No Patch for New PhantomRPC Privilege Escalation Technique in Windows A fake RPC server can be used to listen for RPC requests and impersonate the target service to elevate privileges to System. Ionut ArghireApril 28, 2026
Vulnerabilities Incomplete Windows Patch Opens Door to Zero-Click Attacks The initial vulnerability was exploited by Russia-linked APT28 in attacks against Ukraine and EU countries. Ionut ArghireApril 27, 2026
Vulnerabilities Organizations Warned of Exploited Windows, Adobe Acrobat Vulnerabilities The security defects allow attackers to escalate privileges and execute arbitrary code remotely. Ionut ArghireApril 14, 2026
Endpoint Security Microsoft to Enable ‘Windows Baseline Security’ With New Runtime Integrity Safeguards Windows will have runtime safeguards enabled by default, ensuring that only properly signed software runs. Ionut ArghireFebruary 12, 2026
Endpoint Security Microsoft to Refresh Windows Secure Boot Certificates in June 2026 After a decade and a half of service, the current certificates will expire, and new ones will be rolled out. Ionut ArghireFebruary 11, 2026
Vulnerabilities 6 Actively Exploited Zero-Days Patched by Microsoft With February 2026 Updates Microsoft’s Patch Tuesday updates fix roughly 60 vulnerabilities found in the company’s products. Eduard KovacsFebruary 10, 2026
Identity & Access Microsoft Moves Closer to Disabling NTLM The next major Windows Server and Windows releases will have the deprecated authentication protocol disabled by default. Ionut ArghireFebruary 2, 2026
Vulnerabilities Microsoft Patches Exploited Windows Zero-Day, 111 Other Vulnerabilities Two vulnerabilities patched this month by Microsoft were disclosed publicly before fixes were released. Eduard KovacsJanuary 13, 2026
Vulnerabilities Microsoft Patches 57 Vulnerabilities, Three Zero-Days Microsoft has addressed a Windows vulnerability exploited as zero-day that allows attackers to obtain System privileges. Ionut ArghireDecember 9, 2025