🔒 Defender scambia erroneamente DigiCert per malware su Windows! La sicurezza informatica rivela le sue ironie. #WindowsDefender #CyberSecurity

🔗 https://www.tomshw.it/hardware/defender-digicert-falso-positivo-windows

Defender scambia DigiCert per malware su Windows

Microsoft Defender ha segnalato certificati DigiCert legittimi come malware su Windows, poi ha corretto le firme e gli avvisi.

Tom's Hardware

Radiogeek 2865 – Microsoft afirma que ya no necesitas una aplicación antivirus de terceros

El programa 2865 de Radiogeek, les habló de varios temas importantes. Microsoft afirma que ya no necesitas una aplicación antivirus de terceros; «Apple de Ternus» y traerá nuevos productos; OpenAI se enfrenta a una investigación criminal después de que un sospechoso de asesinato preguntara a ChatGPT; y por último Samsung confirma accidentalmente las Galaxy Glasses en una nueva filtración.

https://open.spotify.com/episode/6fyeztThm0Cs1l8ypHkof3?si=f340309a02c84967

Toda esta información la pueden encontrar desde nuestra web http://www.infosertec.com.ar o bien desde el canal de Telegram/Whastapp, o Instagram.

Esperamos sus comentarios.

#antivirus #APPLE #arielmcorg #google #IA #infosertec #microsoft #PODCAST #PORTADA #RADIOGEEK #tech #tecnología #windowsDefender

Chaotic Eclipse dropped a third Defender zero-day today. No admin required.

Four independent locking mechanisms block all signature updates. The one they withheld: a way to lie to the EDR console so the dashboard shows green while signatures go stale.

The sync provider name changed from "SERIOUSLYMSFT" (RedSun) to "IHATEMICROSOFT" (BlueHammer). UnDefend drops the Cloud Files trick entirely — just file locks. Standard user.

BlueHammer patched Tuesday. RedSun unpatched. UnDefend no CVE.

Line-by-line: https://nefariousplan.com/posts/undefend/

#infosec #WindowsDefender #CVE #UnDefend

UnDefend: What Chaotic Eclipse Held Back This Time — nefariousplan.com

The third zero-day from the same researcher makes Defender permanently blind from a standard user account — no elevation required. A line-by-line walk of UnDefend.cpp, and the one mechanism that didn't ship.

nefariousplan.com

It should've been a known fact that you should never ever piss off a hacker with anime profile pic.

I don't know what is inside Microsoft mind.

Context: A hacker accused Microsoft breached an agreement with them, in retaliation the hacker drop 2 zero days on Microsoft Defender

https://www.youtube.com/watch?v=Q0pKjLMOvFE

#cybersecurity #infosec #hacking #zeroday #microsoft #defender #windowsdefender #antivirus #redsun #bluehammer

Disgruntled Researcher Drops Windows Exploits for Revenge (Twice)

YouTube

Fully exploitable Windows Defender vulnerability with full source code public for >8 days no CVE assigned so far (BlueHammer).

Writeup: https://hackingpassion.com/bluehammer-windows-defender-zero-day/

Full source code: https://github.com/Nightmare-Eclipse/BlueHammer

/cc @bsi Was ist eigentlich der "Prozess" für vollständig öffentliche Lücken zu denen es seit über einer Woche noch nicht einmal eine CVE Nummer gibt?

Edit: Patch and CVE number CVE-2026-33825 available by now. Took 6 days though.

#infosec #itsec #Microsoft #WindowsDefender #BlueHammer

Windows Defender Is Being Used to Hack Windows

A Windows zero-day called BlueHammer exploits Defender's own update process to give attackers full SYSTEM access. The exploit code is public and unpatched.

HackingPassion.com : [email protected][~]
Oh, look at that! 🎉 Windows Defender, the "all-powerful" guardian of your PC, is now moonlighting as a #vulnerability. 🤦‍♂️ But don't worry, aspiring hackers! There's a course for this "ethical" hacking, because who wouldn't want to learn how to exploit the software designed to protect you? 😂
https://hackingpassion.com/bluehammer-windows-defender-zero-day/ #WindowsDefender #EthicalHacking #CyberSecurity #TechNews #Exploits #HackerNews #ngated
Windows Defender Is Being Used to Hack Windows

A Windows zero-day called BlueHammer exploits Defender's own update process to give attackers full SYSTEM access. The exploit code is public and unpatched.

HackingPassion.com : [email protected][~]
Windows Defender Is Being Used to Hack Windows

A Windows zero-day called BlueHammer exploits Defender's own update process to give attackers full SYSTEM access. The exploit code is public and unpatched.

HackingPassion.com : [email protected][~]

Windows-Zero-Day „BlueHammer“: Defender-Updateprozess als Einfallstor für Rechteausweitung

Ein unter dem Pseudonym „Chaotic Eclipse“ auftretender Sicherheitsforscher hat Anfang April 2026 einen funktionsfähigen Exploit für eine ungepatchte Windows-Schwachstelle veröffentlicht – ohne Absprache mit Microsoft, ohne CVE-Nummer.

https://www.all-about-security.de/windows-zero-day-bluehammer-defender-updateprozess-als-einfallstor-fuer-rechteausweitung/

#windows #windowsdefender #exploit #zeroday

Windows-Zero-Day „BlueHammer": Defender-Updateprozess als Einfallstor für Rechteausweitung

Windows-Zero-Day BlueHammer nutzt Defender-Updates und VSS, um lokale Rechte auf SYSTEM zu eskalieren – ungepacht, öffentlich, funktionsfähig.

All About Security Das Online-Magazin zu Cybersecurity (Cybersicherheit). Ransomware, Phishing, IT-Sicherheit, Netzwerksicherheit, KI, Threats, DDoS, Identity & Access, Plattformsicherheit
Windows 11 : comment activer le Contrôle intelligent des applications

Le Contrôle intelligent des applications de Windows 11 s'active enfin sans réinstaller le système. On vous explique comment faire et si ça vaut le coup.

JustGeek

RE: https://mastodon.social/@salmorejogeek/116272163816578304

Acordo entre #Canonical e #Microsoft permite oferecer #WindowsDefender diretamente no #Ubuntu

Lembrando que Ubuntu é a distro padrão do Windows Subsystem for Linux #WSL

🔗 https://ubuntu.com/blog/defenderandpro