Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

The US Espionage Act is about to expire, and lawmakers are divided over protecting Americans from warrantless surveillance.

Bluesky confirms DDoS attack is causing persistent app outages

Three Microsoft Defender zero-days were actively exploited. 2 are not yet patched

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Three Microsoft Defender zero-days were actively exploited. 2 are not yet patched
Identity

Three Microsoft Defender zero-days were actively exploited. 2 are not yet patched

By April 17, 2026No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Ravi LakshmananApril 17, 2026Vulnerabilities / Endpoint Security

Huntress warns that attackers are exploiting three recently disclosed security flaws in Microsoft Defender to gain elevated privileges on compromised systems.

This activity included exploitation of three vulnerabilities codenamed BlueHammer (GitHub sign-in required), RedSun, and UnDefend, all of which were released as zero-days by researchers known as Chaotic Eclipse (also known as Nightmare-Eclipse) in response to Microsoft’s vulnerability disclosure process.

BlueHammer and RedSun are both local privilege escalation (LPE) flaws that affect Microsoft Defender, but UnDefend can be used to cause a denial of service (DoS) condition, effectively blocking definition updates.

Microsoft moved to support BlueHammer as part of the Patch Tuesday update released earlier this week. This vulnerability is tracked with CVE identifier CVE-2026-33825. However, other flaws have not been fixed as of this writing.

In a series of posts shared on X, Huntress said he observed all three flaws being exploited in the wild, with BlueHammer being weaponized starting April 10, 2026, followed by the RedSun and UnDefend proof-of-concept (PoC) exploits on April 16.

“These calls followed typical keyboard enumeration commands that indicate threat actor activity, such as whoami /priv, cmdkey /list, and net group,” it added.

The cybersecurity vendor said it has taken steps to isolate affected organizations to prevent further damage following the exploit. Hacker News has reached out to Microsoft for comment and will update the article if we hear back.


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleCombating pollution at the source
Next Article Bluesky confirms DDoS attack is causing persistent app outages

Related Posts

Google to block 8.3 billion policy-violating ads in 2025, launches complete privacy review of Android 17

April 17, 2026

NIST limits CVE enrichment after vulnerability submissions spike by 263%

April 17, 2026

Operation PowerOFF seizes 53 DDoS domains and exposes 3 million criminal accounts

April 17, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

The US Espionage Act is about to expire, and lawmakers are divided over protecting Americans from warrantless surveillance.

Bluesky confirms DDoS attack is causing persistent app outages

Three Microsoft Defender zero-days were actively exploited. 2 are not yet patched

Combating pollution at the source

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.