Cyberkendra
Zero-Day Exploit Discovered in Avast Antivirus
Article Content
A proof-of-concept exploit named PrettyPrague has been released for a privilege escalation vulnerability in Avast Antivirus, allowing attackers to dump the Windows Security Account Manager (SAM) database and execute commands as NT AUTHORITY\SYSTEM. The exploit affects all versions of Avast Antivirus and potentially other Gen Digital products, including AVG and Norton. The researcher, known as Chaotic Eclipse or MSNightmare, published the exploit on August 30, 2026, and it quickly gained traction on GitHub, reaching 125 stars and 31 forks within 24 hours. Gen Digital has not publicly acknowledged the vulnerability or provided any patches or workarounds. Security professionals are advised to monitor for unusual activity related to the SAM registry hive and rotate local account credentials as a precaution.
Key Points: • PrettyPrague exploit allows full local compromise via Avast Antivirus. • No CVE or patch currently exists for the vulnerability. • Gen Digital has not responded to the exploit's disclosure.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.