Skip to main content
← All Articles

Tag

#Privilege Escalation

109 articles

Advertisement

"Dirty Frag" Linux Kernel LPE: Unpatched Root Access Risk
HIGH
Vulnerabilities

"Dirty Frag" Linux Kernel LPE: Unpatched Root Access Risk

An unpatched Linux kernel vulnerability dubbed Dirty Frag allows local privilege escalation to root, building on the exploitation patterns of CVE-2026-31431.

Runtime Rebel Intel
4 min read · May 8, 2026
Microsoft Edge Password Storage: Risk of Credential Dumping
HIGH
Vulnerabilities

Microsoft Edge Password Storage: Risk of Credential Dumping

Microsoft Edge stores sensitive user passwords in process memory. A PoC exploit demonstrates how attackers with admin privileges can dump credentials, posing significant…

Runtime Rebel Intel
4 min read · May 6, 2026
HIGH
Vulnerabilities

CVE-2024-1086: Copy Fail Linux Privilege Escalation Under Exploitation

CISA adds CVE-2024-1086 (Copy Fail) to its KEV catalog after Microsoft observes exploitation of this Linux Netfilter privilege escalation vulnerability.

Runtime Rebel Intel
3 min read · May 4, 2026
CVE-2026-31431: CISA Warns of Linux Local Privilege Escalation Exploit
HIGH
Vulnerabilities

CVE-2026-31431: CISA Warns of Linux Local Privilege Escalation Exploit

CISA adds CVE-2026-31431 to its KEV catalog following active exploitation of a Linux local privilege escalation flaw. Learn how to mitigate root access risks.

Runtime Rebel Intel
3 min read · May 3, 2026
CRITICAL
Vulnerabilities

Windows Kernel LPE CVE-2024-21338: Lazarus Group Exploits Zero-Day

CISA adds CVE-2024-21338 to KEV catalog after Lazarus Group exploited the Windows Kernel vulnerability to deploy rootkits and bypass security controls.

Runtime Rebel Intel
3 min read · Apr 29, 2026
HIGH
Vulnerabilities

CVE-2024-9486: Critical Kubernetes Image Builder Flaws Exposed

Critical vulnerabilities in Kubernetes Image Builder allow root access via hardcoded credentials. Update to version v0.1.38 to mitigate potential exploits.

Runtime Rebel Intel
3 min read · Apr 28, 2026

Advertisement

Unpatched PhantomRPC: Windows Privilege Escalation via RPC Flaw
HIGH
Vulnerabilities

Unpatched PhantomRPC: Windows Privilege Escalation via RPC Flaw

Runtime Rebel analyzes the unpatched 'PhantomRPC' flaw in Windows, detailing how an architectural weakness in RPC enables local privilege escalation.

Runtime Rebel Intel
4 min read · Apr 27, 2026
HIGH
Vulnerabilities

OpenSSH 9.8 Logic Error: Root Access via Certificate Principals

OpenSSH 9.8 fixes a 15-year-old logic flaw in certificate parsing that could allow unauthorized privilege escalation and root shell access via crafted names.

Runtime Rebel Intel
4 min read · Apr 27, 2026
CRITICAL
Vulnerabilities

CVE-2024-21412: Microsoft Defender Zero-Day Exploitation and Analysis

Analysis of a Microsoft Defender zero-day vulnerability used to extract NTLM hashes from the SAM database and achieve system-level privileges.

Runtime Rebel Intel
3 min read · Apr 23, 2026
HIGH
Vulnerabilities

CVE-2026-27668: Privilege Escalation in Siemens RUGGEDCOM CROSSBOW

Authenticated User Administrators can escalate privileges in Siemens RUGGEDCOM CROSSBOW SAM-P versions prior to 5.8. Update to mitigate CVE-2026-27668 risks.

Runtime Rebel Intel
4 min read · Apr 22, 2026
HIGH
Vulnerabilities

CVE-2023-38171: ASP.NET Core Privilege Escalation — Mitigation Guide

Microsoft issues emergency OOB security updates for a critical ASP.NET Core privilege escalation flaw. Learn how to patch affected systems now.

Runtime Rebel Intel
3 min read · Apr 22, 2026
Microsoft Defender Zero-Days BlueHammer and RedSun Actively Exploited
CRITICAL
Vulnerabilities

Microsoft Defender Zero-Days BlueHammer and RedSun Actively Exploited

Huntress warns of active exploitation of three Microsoft Defender vulnerabilities, including BlueHammer and RedSun, allowing for privilege escalation.

Runtime Rebel Intel
4 min read · Apr 17, 2026
HIGH
Vulnerabilities

CVE-2026-5387: AVEVA Pipeline Simulation Privilege Escalation

Unauthenticated attackers can exploit CVE-2026-5387 in AVEVA Pipeline Simulation <=2025_SP1_build_7.1.9497.6351 to modify critical ICS simulation parameters and training…

Runtime Rebel Intel
4 min read · Apr 17, 2026
HIGH
Malware

Signed Software Abuse: How Malicious Scripts Disable EDR and AV

Analysis of signed adware being used to deploy antivirus-killing scripts with SYSTEM privileges across government and healthcare sectors.

Runtime Rebel Intel
4 min read · Apr 15, 2026
HIGH
Vulnerabilities

CVE-2022-21882: CISA Warns of Windows Task Host Exploit in the Wild

CISA adds CVE-2022-21882 to the KEV catalog. Learn how to mitigate this Windows Task Host privilege escalation vulnerability affecting Win32k.sys.

Runtime Rebel Intel
4 min read · Apr 15, 2026
Microsoft Patch Update: Zero-Day Privilege Elevation Dominates
HIGH
Vulnerabilities

Microsoft Patch Update: Zero-Day Privilege Elevation Dominates

Microsoft's latest patch update addresses 165 vulnerabilities, with over half being privilege elevation flaws, including two actively exploited zero-days.

Runtime Rebel Intel
4 min read · Apr 15, 2026
BlueHammer Zero-Day: Windows Local Privilege Escalation Exploit Risks
HIGH
Vulnerabilities

BlueHammer Zero-Day: Windows Local Privilege Escalation Exploit Risks

Researcher Chaotic Eclipse released the BlueHammer zero-day exploit for Windows, enabling local privilege escalation. Learn how to detect and mitigate it.

Runtime Rebel Intel
4 min read · Apr 10, 2026
HIGH
Vulnerabilities

Palo Alto Networks & SonicWall High-Severity Privilege Escalation Patches

Palo Alto Networks and SonicWall have issued patches for high-severity vulnerabilities allowing privilege escalation to administrator. Immediate patching is advised.

Runtime Rebel Intel
5 min read · Apr 9, 2026
HIGH
Vulnerabilities

GPUBreach Attack: Exploiting GPU Rowhammer for Root Shell Access

Research reveals GPUBreach, a technique using GPU-based Rowhammer to achieve root shell access and privilege escalation on shared memory systems.

Runtime Rebel Intel
4 min read · Apr 7, 2026
HIGH
Vulnerabilities

GPUBreach Attack: Exploiting GDDR6 via GPU Rowhammer Bit-Flips

Researchers discover GPUBreach, a Rowhammer-style attack on GDDR6 memory that enables privilege escalation and full system takeover on modern GPUs.

Runtime Rebel Intel
3 min read · Apr 7, 2026
CVE-2026-35616: Critical FortiClient EMS API Bypass Exploited
CRITICAL
Vulnerabilities

CVE-2026-35616: Critical FortiClient EMS API Bypass Exploited

Fortinet releases out-of-band patches for CVE-2026-35616, a critical API access bypass in FortiClient EMS enabling unauthenticated privilege escalation.

Runtime Rebel Intel
3 min read · Apr 5, 2026
CRITICAL
Threat Intel

TrueConf Zero-Day: Exploitation Against Asian Governments

A Chinese threat actor is actively exploiting a TrueConf video conferencing zero-day to conduct reconnaissance and achieve privilege escalation against Asian government…

Runtime Rebel Intel
4 min read · Apr 3, 2026
Google Vertex AI Over-Privilege: Data Theft & Cloud Intrusion Risk
HIGH
Cloud Security

Google Vertex AI Over-Privilege: Data Theft & Cloud Intrusion Risk

Palo Alto Networks researchers found over-privileged AI agents in Google Vertex AI could be exploited for data exfiltration and access to restricted cloud infrastructure.

Runtime Rebel Intel
5 min read · Apr 1, 2026
HIGH
Vulnerabilities

Schneider Electric Plant iT/Brewmaxx RCE via Multiple Redis Vulnerabilities

Multiple critical and high-severity vulnerabilities in Schneider Electric Plant iT/Brewmaxx 9.60+ (Redis component) enable RCE and privilege escalation, affecting…

Runtime Rebel Intel
4 min read · Mar 24, 2026