Bleeping Computer: Microsoft warns of new Defender zero-days exploited in attacks. “On Wednesday, Microsoft started rolling out security patches for two Defender vulnerabilities that have been exploited in zero-day attacks.”

https://rbfirehose.com/2026/05/23/bleeping-computer-microsoft-warns-of-new-defender-zero-days-exploited-in-attacks/
Bleeping Computer: Microsoft warns of new Defender zero-days exploited in attacks

Bleeping Computer: Microsoft warns of new Defender zero-days exploited in attacks. “On Wednesday, Microsoft started rolling out security patches for two Defender vulnerabilities that have bee…

ResearchBuzz: Firehose

Want more control over what runs on your Windows machine? 💻 This short dives into Windows Defender Application Control – enterprise-level security made accessible. Learn how to block unwanted apps and keep your system secure. Check it out! #WindowsDefender #App #Shorts

https://www.youtube.com/watch?v=gIsBjY7xWLQ

Funktioniert der #WindowsDefender auch in #AtlasOS? Ich würd das ja glatt mal ausprobieren, aber ich bin halt überhaupt nicht scharf auf Malware.

原来这个 Smart App Control 是这么脑残的东西
不认识的 exe 全都不给运行
太安全了

#Windows #Windows11 #WindowsDefender

🔒 Defender scambia erroneamente DigiCert per malware su Windows! La sicurezza informatica rivela le sue ironie. #WindowsDefender #CyberSecurity

🔗 https://www.tomshw.it/hardware/defender-digicert-falso-positivo-windows

Defender scambia DigiCert per malware su Windows

Microsoft Defender ha segnalato certificati DigiCert legittimi come malware su Windows, poi ha corretto le firme e gli avvisi.

Tom's Hardware

Radiogeek 2865 – Microsoft afirma que ya no necesitas una aplicación antivirus de terceros

El programa 2865 de Radiogeek, les habló de varios temas importantes. Microsoft afirma que ya no necesitas una aplicación antivirus de terceros; «Apple de Ternus» y traerá nuevos productos; OpenAI se enfrenta a una investigación criminal después de que un sospechoso de asesinato preguntara a ChatGPT; y por último Samsung confirma accidentalmente las Galaxy Glasses en una nueva filtración.

https://open.spotify.com/episode/6fyeztThm0Cs1l8ypHkof3?si=f340309a02c84967

Toda esta información la pueden encontrar desde nuestra web http://www.infosertec.com.ar o bien desde el canal de Telegram/Whastapp, o Instagram.

Esperamos sus comentarios.

#antivirus #APPLE #arielmcorg #google #IA #infosertec #microsoft #PODCAST #PORTADA #RADIOGEEK #tech #tecnología #windowsDefender

Chaotic Eclipse dropped a third Defender zero-day today. No admin required.

Four independent locking mechanisms block all signature updates. The one they withheld: a way to lie to the EDR console so the dashboard shows green while signatures go stale.

The sync provider name changed from "SERIOUSLYMSFT" (RedSun) to "IHATEMICROSOFT" (BlueHammer). UnDefend drops the Cloud Files trick entirely — just file locks. Standard user.

BlueHammer patched Tuesday. RedSun unpatched. UnDefend no CVE.

Line-by-line: https://nefariousplan.com/posts/undefend/

#infosec #WindowsDefender #CVE #UnDefend

UnDefend: What Chaotic Eclipse Held Back This Time — nefariousplan.com

The third zero-day from the same researcher makes Defender permanently blind from a standard user account — no elevation required. A line-by-line walk of UnDefend.cpp, and the one mechanism that didn't ship.

nefariousplan.com

It should've been a known fact that you should never ever piss off a hacker with anime profile pic.

I don't know what is inside Microsoft mind.

Context: A hacker accused Microsoft breached an agreement with them, in retaliation the hacker drop 2 zero days on Microsoft Defender

https://www.youtube.com/watch?v=Q0pKjLMOvFE

#cybersecurity #infosec #hacking #zeroday #microsoft #defender #windowsdefender #antivirus #redsun #bluehammer

Disgruntled Researcher Drops Windows Exploits for Revenge (Twice)

YouTube

Fully exploitable Windows Defender vulnerability with full source code public for >8 days no CVE assigned so far (BlueHammer).

Writeup: https://hackingpassion.com/bluehammer-windows-defender-zero-day/

Full source code: https://github.com/Nightmare-Eclipse/BlueHammer

/cc @bsi Was ist eigentlich der "Prozess" für vollständig öffentliche Lücken zu denen es seit über einer Woche noch nicht einmal eine CVE Nummer gibt?

Edit: Patch and CVE number CVE-2026-33825 available by now. Took 6 days though.

#infosec #itsec #Microsoft #WindowsDefender #BlueHammer

Windows Defender Is Being Used to Hack Windows

A Windows zero-day called BlueHammer exploits Defender's own update process to give attackers full SYSTEM access. The exploit code is public and unpatched.

HackingPassion.com : [email protected][~]
Oh, look at that! 🎉 Windows Defender, the "all-powerful" guardian of your PC, is now moonlighting as a #vulnerability. 🤦‍♂️ But don't worry, aspiring hackers! There's a course for this "ethical" hacking, because who wouldn't want to learn how to exploit the software designed to protect you? 😂
https://hackingpassion.com/bluehammer-windows-defender-zero-day/ #WindowsDefender #EthicalHacking #CyberSecurity #TechNews #Exploits #HackerNews #ngated
Windows Defender Is Being Used to Hack Windows

A Windows zero-day called BlueHammer exploits Defender's own update process to give attackers full SYSTEM access. The exploit code is public and unpatched.

HackingPassion.com : [email protected][~]