Topic: detection queries
-
Unofficial patch fixes Windows LegacyHive zero-day flaw
A Windows zero-day vulnerability called LegacyHive in the User Profile Service allows non-admin users to escalate privileges and gain code execution when an administrator logs in, affecting fully updated Windows systems. Microsoft is investigating the flaw but has not yet released an official pat...
Read More » -
Windows LegacyHive zero-day grants hackers admin access
Security researcher "Nightmare Eclipse" released a Windows zero-day exploit called LegacyHive that grants elevated privileges on fully patched systems, targeting a flaw in the Windows User Profile Service. The exploit requires additional user credentials to activate, allowing non-admin users to m...
Read More »