Home / Sep 11, 2026 / Story
0
#4 SecurityWeek general September 10, 2026 at 07:09 UTC

New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defender

By Ionut Arghire

AI Summary

A researcher identified as 'Nightmare-Eclipse' published a new zero-day exploit dubbed 'ShieldCrash' that grants full SYSTEM privileges on Windows machines running the September 2026 security patches, targeting Microsoft Defender. This continues a pattern of deliberate public zero-day releases by this researcher against Microsoft, and the exploit is functional against fully-patched September 2026 systems, leaving no immediate mitigation path via patching. Windows defenders should monitor for exploit use in the wild and apply any out-of-band fixes Microsoft releases.

Relevance score: 85.0/100

# More from September 11