oops, I'm a few days late, but MS finally released a patch for the issue I reported last year - CVE-2025-26684
Defender for Linux can be tricked into executing arbitrary code as root. Writeup: https://astr.al/notes/2024-11-28_mdatp_privesc

some reboosts would be much appreciated <3

#microsoft

ast.ral β€” eureka's homepage

@astraleureka 6 months, jesus ...
@bonno considering their fix was just removing 8 lines of code, bit ridiculous