Researchers from Kaspersky team recent addressed this Zero-day vulnerability in win32k.sys. The vulnerability is presented in the CreateWindowEx, a function that creates an overlapped, pop-up, or child window with an extended style. This vulnerability was then reported later to Microsoft and released a patch for zero-day along with 74 other security vulnerabilities. Attackers exploit this elevation of privilege vulnerability in Windows when Win32k component fails to properly handle objects in memory. At the final stage, the shellcode is to make a trivial reverse shell that leads to attackers gain complete control of the targeted victims.”]

