Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    CrowdStrike warns of increasing Chinese AI cyberattacks on U.S. tech

    June 10, 2026

    Lenovo slides nearly 10% amid reports of price hikes due to memory costs

    June 10, 2026

    Three key vital signs make up the “urban pulse” of a city

    June 10, 2026
    Facebook X (Twitter) Instagram
    Addison Markets
    • Home
    • USA
    • Europe
    • Business
    • Investing
    • Tech
    • Politics
    • Contact Us
    Addison Markets
    Home»Tech»Locked in heated rivalry with researcher, Microsoft fixes 0-day they disclosed
    Tech

    Locked in heated rivalry with researcher, Microsoft fixes 0-day they disclosed

    franperez66q@protonmail.comBy franperez66q@protonmail.comJune 10, 2026No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email



    Tuesday’s patch bundle also fixed MiniPlasma, a separate vulnerability disclosed by Nightmare Eclipse. Microsoft said in an email that the vulnerability is tracked as CVE-2020-17103, a vulnerability Microsoft first fixed six years ago. That means MiniPlasma was the result of a regression or an incomplete patch in its initial form. The company is in the process of updating Tuesday’s bulletin to note the republication.

    Microsoft has yet to release patches for other vulnerabilities disclosed by Nightmare Eclipse. The company did provide manual instructions for mitigating YellowKey, a vulnerability that allows attackers to defeat Bitlocker full-disk encryption. That could be a boon when attackers have physical access to a device (the precise scenario Bitlocker is designed to protect against). The company has yet to fix the underlying cause of the vulnerability.

    The status of other vulnerabilities disclosed by Nightmare Eclipse are also unclear at the moment. The researcher named one vulnerability, present in Windows Defender RedSun. Another, named BlueHammer, is also a local privilege escalation flaw that provides SYSTEM rights.

    Over the past few months, Nightmare Eclipse has taken multiple potshots at Microsoft. The specific criticisms remain unclear, but many make references to complaints about the company’s vulnerability disclosure program. Microsoft, in turn, has publicly railed against the researcher for “not responsibly” disclosing the vulnerabilities and made a vailed reference to the possibility of pursuing legal action. After a public backlash, Microsoft later relented and vowed no such legal action would occur.

    On Tuesday, Nightmare Eclipse published exploit code for a new Windows vulnerability. It’s a race condition that targets Defender.

    Tuesday’s patch batch included fixes for roughly 200 vulnerabilities. Notwithstanding the appearance that MiniPlasma was fixed, two of them were also confirmed as zero-days.

    Post updated to include information Microsoft provided after initial publication of this post.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    franperez66q@protonmail.com
    • Website

    Related Posts

    Three key vital signs make up the “urban pulse” of a city

    June 10, 2026

    Stocks recover from sell-off, but even bulls warn of more volatility

    June 10, 2026

    How Jim Cramer views Apple on Day 2 of its post-WWDC keynote pullback

    June 10, 2026

    Starlink charges $10 monthly hardware fee in move away from one-time purchases

    June 10, 2026

    Entergy CEO pushes back on fears that AI data centers will drive up electricity bills

    June 9, 2026

    Anthropic says these topics are too dangerous to let its Fable 5 model talk about

    June 9, 2026
    Leave A Reply Cancel Reply

    Top Reviews
    Editors Picks

    CrowdStrike warns of increasing Chinese AI cyberattacks on U.S. tech

    June 10, 2026

    Lenovo slides nearly 10% amid reports of price hikes due to memory costs

    June 10, 2026

    Three key vital signs make up the “urban pulse” of a city

    June 10, 2026

    These dividend stocks have slashed their payments, Morgan Stanley says

    June 10, 2026
    © 2026 All right reserved
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.