The exploit functions by escalating low-level user permissions to administrative control, effectively bypassing security measures. Security researcher Will Dormann confirmed the vulnerability, noting that it remains active as long as Windows Defender is enabled. Nightmare Eclipse claims this exploit renders previous patches for the earlier 'RoguePlanet' bug ineffective, suggesting Microsoft’s remediation efforts were insufficient.
In section Startups & Technology
Security Researcher Discloses Windows Zero-Day Despite Legal Threats
Ignoring previous legal warnings from Microsoft, a researcher known as Nightmare Eclipse has published details of a new zero-day vulnerability dubbed ShieldBreak. The flaw, which affects Windows Defender, grants attackers full system-wide access to machines running Windows 10, 11, and the latest Windows Server 2025 iterations.

Microsoft has not yet issued a fix for ShieldBreak, leaving systems exposed. This disclosure marks the latest escalation in an ongoing dispute between the researcher and the tech giant regarding vulnerability reporting. Nightmare Eclipse maintains that the public release of these flaws is a response to Microsoft’s inadequate handling of previous submissions. The company previously threatened legal action against researchers who bypass standard disclosure protocols, a stance that drew widespread criticism from the cybersecurity community. While Microsoft later softened its tone on social media, the underlying policy remains in effect as the company continues to rely on AI-driven diagnostics to manage its massive patch volume.
Comments (0)
No comments yet. Be the first!