Piece of news of the day

ADVANCED SECURITY EUROPA

EOOD

ShieldBreak: Microsoft Defender Zero-Day Exploit Allows System Privileges on Fully Patched Systems

12 August 2026

A security researcher known as Nightmare Eclipse has released a new Microsoft Defender zero-day exploit called "ShieldBreak" after Microsoft's August 2026 Patch Tuesday security updates.
This exploit bypasses the RoguePlanet privilege escalation flaw patched by Microsoft in July.
ShieldBreak allows attackers to gain SYSTEM privileges on fully patched Windows 10, 11, and Server systems.
The exploit works only if Microsoft Defender is enabled.
Microsoft and Nightmare Eclipse have been in a dispute over vulnerability disclosure and bug bounty practices.
Nightmare Eclipse has disclosed multiple zero-day exploits targeting Microsoft products, with some vulnerabilities still awaiting official patches.
Microsoft has responded with warnings of legal action against those causing harm to customers.
This ongoing conflict highlights the challenges in cybersecurity and responsible disclosure practices.