Get a Pentest and security assessment of your IT network.

Cyber Security

SandboxEscaper Debuts ByeBear Windows Patch Bypass

Developer SandboxEscaper has disclosed a second bypass exploit for a patch that fixes a Windows local privilege-escalation (LPE) flaw again without notifying Microsoft. She released her first bypass for the that patch (which was issued in April) two weeks ago, as part of a cache of four exploits, all published without following responsible disclosure guidelines. This particular flaw now has a micropatch organization, thanks to the 0patch organization. She has also released another exploit that allows a local attacker to run processes in an elevated context, allowing them to change or delete data.

Source: https://threatpost.com/sandboxescaper-byebear-windows-bypass/145470/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security