취약점  ·  2026-04-18

Three Microsoft Defender Zero-Days Actively Exploited by Threat Actors

취약점High 영향도CVE-2026-33825 (BlueHammer only), RedSun and UnDefend unpatched
Three vulnerabilities in Microsoft Defender (codenamed BlueHammer, RedSun, and UnDefend) allow attackers to gain elevated privileges on compromised Windows systems. Published by researcher 'Chaotic Eclipse' as zero-days in response to Microsoft's vulnerability disclosure process.
Exploitation of Windows Defender components to escalate privileges and gain administrator access. Exploit code is publicly available on GitHub.
Microsoft Windows Defender across Windows environments. BlueHammer has been patched, but RedSun and UnDefend remain unpatched.
Apply Microsoft patch for CVE-2026-33825 (BlueHammer) immediately. Monitor for patches for RedSun and UnDefend. Implement additional endpoint monitoring and restrict administrator privileges.
출처
TechCrunchHuntress Labs
라이브 피드에서 보기 AI 보안 및 거버넌스 관련 소식을 더 살펴보세요 — 매일 아침 업데이트.
피드 열기 →