Windows Defender 0day Vulnerability
| eicar_com.zip | ||
| LICENSE | ||
| README.md | ||
| resource.h | ||
| ShieldCrash.aps | ||
| ShieldCrash.cpp | ||
| ShieldCrash.rc | ||
| ShieldCrash.slnx | ||
| ShieldCrash.vcxproj | ||
| ShieldCrash.vcxproj.filters | ||
| ShieldCrash.vcxproj.user | ||
| Warden.dll | ||
ShieldCrash
Windows Defender 0day Vulnerability
Microsoft has failed to properly patch ShieldBreak CVE-2026-69414, under specific conditions it is still possible to trigger the exact same problem that was caused by ShieldBreak. While Microsoft fixed several things to prevent re-exploiting the issue, they missed a spot where ShieldBreak can still be exploited.
This PoC demonstrates an arbitrary file read as SYSTEM with September 2026, all supported windows versions are affected.
I might rework this later into a full SYSTEM PoC but for now I'm dropping this skeleton PoC because I'm feeling a bit lazy.