#4
SecurityWeek
general
September 10, 2026 at 07:09 UTC
New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defender
By Ionut Arghire
AI Summary
A researcher identified as 'Nightmare-Eclipse' published a new zero-day exploit dubbed 'ShieldCrash' that grants full SYSTEM privileges on Windows machines running the September 2026 security patches, targeting Microsoft Defender. This continues a pattern of deliberate public zero-day releases by this researcher against Microsoft, and the exploit is functional against fully-patched September 2026 systems, leaving no immediate mitigation path via patching. Windows defenders should monitor for exploit use in the wild and apply any out-of-band fixes Microsoft releases.
Relevance score: 85.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →