Skip to main content
← All Articles

Tag

#Windows

36 articles

Advertisement

HIGH
Vulnerabilities

ShieldBreak: Windows Zero-Day EoP via Microsoft Defender

Security researcher Nightmare Eclipse released 'ShieldBreak,' a Windows zero-day exploit enabling privilege escalation via Microsoft Defender.

Runtime Rebel Intel
4 min read · Aug 13, 2026
HIGH
Vulnerabilities

Plug and Pwn: SYSTEM Access via Windows Plug and Play Abuse

New Plug and Pwn attacks leverage Windows Plug and Play to install vulnerable vendor software, granting attackers SYSTEM privileges via USB emulation or RDP.

Runtime Rebel Intel
6 min read · Aug 12, 2026
HIGH
Vulnerabilities

CVE-2026-68820: Windows afd.sys Privilege Escalation Exploited

Microsoft addresses 398 vulnerabilities, including an actively exploited privilege escalation flaw in Windows' afd.sys component.

Runtime Rebel Intel
4 min read · Aug 12, 2026
Microsoft August 2026 Patch Tuesday: 398 Flaws and Zero-Day
CRITICAL
Vulnerabilities

Microsoft August 2026 Patch Tuesday: 398 Flaws and Zero-Day

Microsoft patches 398 flaws in August 2026, including an actively exploited Windows kernel driver zero-day and four critical RCE vulnerabilities.

Runtime Rebel Intel
3 min read · Aug 12, 2026
MEDIUM
Vulnerabilities

NatJack Attacks: Exploiting NAT Trust in Windows, Linux, macOS

Synack's research reveals NatJack attacks, a new class of NAT exploitation affecting Windows, Linux, and macOS, leveraging trust assumptions.

Runtime Rebel Intel
4 min read · Aug 9, 2026
khunt Toolkit Leverages SQLi in Oracle for SYSTEM Access
HIGH
Vulnerabilities

khunt Toolkit Leverages SQLi in Oracle for SYSTEM Access

Attackers exploit SQL injection in a public-facing web app to compile the khunt toolkit within Oracle, achieving SYSTEM-level access on Windows servers.

Runtime Rebel Intel
4 min read · Aug 6, 2026

Advertisement

MEDIUM
Threat Intel

Pass-ta-key Attacks Hijack Google-Synced Passkeys on Windows

Researchers uncover Pass-ta-key attack methods that allow malware to hijack passkey-protected accounts on Windows without user interaction.

Runtime Rebel Intel
3 min read · Aug 5, 2026
AI-Assisted Phishing Leverages WebDAV for Infostealer Deployment
HIGH
Malware

AI-Assisted Phishing Leverages WebDAV for Infostealer Deployment

An exposed server revealed an AI-assisted phishing toolkit used in a WebDAV-based infostealer campaign targeting Windows users in Mexico. Learn detection and mitigation.

Runtime Rebel Intel
5 min read · Jul 20, 2026
HIGH
Vulnerabilities

Windows LegacyHive Zero-Day Exploit Grants Admin Access — Patch Status

The LegacyHive Zero-Day exploit allows local attackers to gain SYSTEM privileges on patched Windows systems by targeting legacy registry hive permissions.

Runtime Rebel Intel
4 min read · Jul 17, 2026
Zoom CVE-2026-53412: Critical Windows Client Account Takeover Fix
HIGH
Vulnerabilities

Zoom CVE-2026-53412: Critical Windows Client Account Takeover Fix

Zoom releases critical security updates for CVE-2026-53412, a high-severity input validation flaw in Windows clients allowing unauthenticated account takeover.

Runtime Rebel Intel
4 min read · Jul 16, 2026
HIGH
Vulnerabilities

CVE-2024-24691: Zoom Windows Client Account Takeover - Patch Now

Zoom has addressed CVE-2024-24691, a critical 9.6 CVSS vulnerability in Windows clients allowing unauthenticated account takeover. Learn how to patch and defend.

Runtime Rebel Intel
3 min read · Jul 15, 2026
LabubaRAT: Rust-Based RAT Masquerades as NVIDIA Software on Windows
HIGH
Malware

LabubaRAT: Rust-Based RAT Masquerades as NVIDIA Software on Windows

Blackpoint Cyber researchers warn of LabubaRAT, a new Rust-based remote access trojan disguised as NVIDIA software, granting full control over Windows hosts.

Runtime Rebel Intel
4 min read · Jul 14, 2026
Ousaban Banking Trojan: Phishing Lures Target Iberian Bank Users
HIGH
Malware

Ousaban Banking Trojan: Phishing Lures Target Iberian Bank Users

Ousaban, a Brazilian banking trojan, targets Windows users in Spain and Portugal via fake PDF phishing lures, aiming to steal financial credentials.

Runtime Rebel Intel
4 min read · Jul 1, 2026
HIGH
Supply Chain

Hola Browser for Windows Compromised: Cryptominer Delivery via Supply Chain

Critical alert: Hola Browser for Windows compromised in a supply chain attack, delivering an undeclared cryptominer. Learn to detect and mitigate the threat.

Runtime Rebel Intel
4 min read · Jun 5, 2026
CRITICAL
Vulnerabilities

PHP RCE via CVE-2024-4577 — Windows Argument Injection Analysis

Technical analysis of the CVE-2024-4577 vulnerability affecting PHP on Windows. Learn how argument injection leads to RCE and how to secure PHP-CGI environments.

Runtime Rebel Intel
4 min read · Jun 3, 2026
HIGH
Vulnerabilities

YellowKey Zero-Day: Mitigating BitLocker Encryption Bypasses in Windows

Microsoft releases mitigation guidance for the YellowKey zero-day, a Windows BitLocker vulnerability allowing unauthorized access to encrypted data volumes.

Runtime Rebel Intel
3 min read · May 20, 2026
MiniPlasma 0-Day: Windows SYSTEM Privilege Escalation via cldflt.sys
HIGH
Vulnerabilities

MiniPlasma 0-Day: Windows SYSTEM Privilege Escalation via cldflt.sys

Technical analysis of the MiniPlasma zero-day vulnerability in cldflt.sys enabling SYSTEM privilege escalation on fully patched Windows systems.

Runtime Rebel Intel
3 min read · May 18, 2026
HIGH
Vulnerabilities

Windows MiniPlasma Zero-Day Exploit: How to Mitigate LPE Threats

A new zero-day exploit dubbed MiniPlasma allows local attackers to gain SYSTEM privileges on fully patched Windows systems. Learn detection and mitigation steps.

Runtime Rebel Intel
3 min read · May 18, 2026
MEDIUM
Vulnerabilities

Dell SupportAssist v4.0.3 Causes Windows BSOD — Remediation Guide

Dell confirms SupportAssist v4.0.3 causes frequent Windows BSOD crashes and system reboots. Learn how to identify and mitigate these stability issues now.

Runtime Rebel Intel
4 min read · May 14, 2026
HIGH
Vulnerabilities

Windows Zero-Days: Analyzing YellowKey and GreenPlasma Exploits

A technical breakdown of the unpatched YellowKey BitLocker bypass and GreenPlasma local privilege escalation vulnerabilities affecting Windows systems.

Runtime Rebel Intel
4 min read · May 14, 2026
HIGH
Vulnerabilities

Microsoft's 137 Patches: Critical Flaws in Azure, Windows, Dynamics

Microsoft's latest security updates address 137 vulnerabilities, including critical flaws in Azure, Windows, and Dynamics 365, requiring immediate patching.

Runtime Rebel Intel
4 min read · May 12, 2026
CRITICAL
Vulnerabilities

CVE-2024-1708 & CVE-2026-32202: CISA KEV Update — Patch Now

CISA adds CVE-2024-1708 and CVE-2026-32202 to the Known Exploited Vulnerabilities Catalog following evidence of active exploitation in the wild.

Runtime Rebel Intel
4 min read · Apr 29, 2026
Unpatched PhantomRPC: Windows Privilege Escalation via RPC Flaw
HIGH
Vulnerabilities

Unpatched PhantomRPC: Windows Privilege Escalation via RPC Flaw

Runtime Rebel analyzes the unpatched 'PhantomRPC' flaw in Windows, detailing how an architectural weakness in RPC enables local privilege escalation.

Runtime Rebel Intel
4 min read · Apr 27, 2026
CRITICAL
Vulnerabilities

APT28 Exploits Incomplete Windows Patch: Zero-Click Attacks Persist

An incomplete Windows patch leaves systems vulnerable to zero-click attacks. Russia-linked APT28 exploited this against Ukraine and EU. Learn how to defend.

Runtime Rebel Intel
4 min read · Apr 27, 2026