
The researcher's vendetta against Microsoft continues apace, but it seems like the company could be keeping up this time around
When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works .
As described by the author, ShieldBreak is essentially a continuation of the previously reported RoguePlanet vulnerability in Windows Defender's subsystems. Eclipse claims that Microsoft failed to properly patch RoguePlanet, and that ShieldBreak in theory bypasses the recently added protection.
The proof-of-concept code for the new exploit is supposed to bring up a super-elevated command prompt with SYSTEM privileges (higher than Administrator). The author claims the vulnerability is present in the "latest" versions of Windows 11 , Windows Server 2025, and Windows 10, though the proof-of-concept is limited to the former two operating systems.
Although researchers like Kevin Beaumont and Will Dormann say they've successfully reproduced the exploit , our informal testing in a Windows 11 virtual machine didn't yield any results. Said VM was just updated yesterday with the latest Windows 11 patches and currently sits at version 10.0. 26200.9168 . Given that Microsoft just published a giga-patch last Tuesday, there's a solid chance it plugged whichever hole ShieldBreak was getting through.
The sample screenshot in the ShieldBreak repository shows the exploit working under version 10.0. 26100.33296 , lending some credence to this theory. A sample size of one does not research make , so we advise caution and remind everyone to run their own testing before assuming the bug has truly been fixed.
Microsoft's bug-hunting nemesis extends vendetta with more zero-day attacks
Key considerations
- Investor positioning can change fast
- Volatility remains possible near catalysts
- Macro rates and liquidity can dominate flows
Reference reading
- https://www.tomshardware.com/tech-industry/cyber-security/SPONSORED_LINK_URL
- https://www.tomshardware.com/tech-industry/cyber-security/microsofts-nemesis-drops-new-zero-day-privilege-escalation-vulnerability-attack-grants-system-level-privileges-but-it-could-already-be-patched#main
- https://www.tomshardware.com/membership
- Claude will begin digitally watermarking marking AI-generated text and images — Anthropic details how it'll comply with the EU's Artificial Intelligence Act
- YMTC breaks into the top three NAND makers for the first time as AI servers swallow 48% of all flash — Chinese vendor has 14% share, according to research
- NVIDIA CEO Tops Glassdoor’s 2026 List of Best CEOs
- Older Raptor Lake CPUs are a ‘core part of the portfolio’ for years to come, says Intel — there’s been a ‘sudden inrush of demand’ for LGA 1700 chips due to DDR
- US imposes up to 100% tariffs on foreign-made drones and components — China remains primary target as Washington moves to reduce reliance on overseas suppliers
Informational only. No financial advice. Do your own research.