Blog | G5 Cyber Security

SandboxEscaper released PoC code for a new Windows zero-day

Security expert SandboxEscaper published a proof-of-concept (PoC) code for a new Windows zero-day. The code overwrites Pci.sys with information about software and hardware problems, collected through the Windows Error Reporting (WER) event-based feedback infrastructure. The expert warns of some limitations for the exploit code that may not work on some CPUs, for example, it could not be used on a single CPU core. The exploit code could take time to trigger the issue because it relies on a race condition and other operations may break the outcome.”]

Source: https://securityaffairs.co/wordpress/79329/hacking/windows-zero-day-poc.html

Exit mobile version