Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
Microsoft has confirmed a critical zero-day vulnerability in Microsoft Defender, identified as CVE-2026-50656, which allows for local privilege escalation. The flaw, dubbed 'RoguePlanet,' was disclosed by security researcher Nightmare Eclipse and has a CVSS score of 7.8. It exploits a race condition...
Security researcher Nightmare Eclipse has disclosed a new zero-day vulnerability named ShieldBreak, which allows attackers to gain SYSTEM-level privileges on fully patched Windows 10, Windows 11, and Windows Server systems. The exploit bypasses Microsoft's previous patch for the RoguePlanet vulnerab...
The anonymous security researcher known as Nightmare-Eclipse has been banned from both GitHub and GitLab due to the release of multiple unpatched Windows vulnerabilities. GitHub terminated the account on May 25, 2026, after the researcher disclosed six exploits, including critical privilege escalati...
Chaotic Eclipse released FalconFlank, a proof-of-concept exploit for a zero-day privilege escalation vulnerability in the CrowdStrike Falcon cybersecurity platform. The exploit leverages the platform's 'Microsoft Office file malicious macro removal' feature to escalate privileges from a low-privileg...