Microsoft nemesis returns with another zero-day PoC — but is 'LegacyHive' as nasty as expected?

https://cdn.mos.cms.futurecdn.net/HCMx4u3U8KVpNCqssJps2J-2560-80.jpg
  • Researcher “Chaotic Eclipse” releases new Windows 11 zero‑day dubbed LegacyHive, a local privilege escalation bug targeting user registry hives
  • Exploit could let attackers elevate low‑privileged accounts, but requires prior device access; no CVE or full PoC was published
  • Experts caution that skilled actors could weaponize it quickly, urging intelligence teams to prepare mitigations despite lower perceived impact than earlier releases

Chaotic Eclipse, the infamous security researcher with a Microsoft grudge, did as they previously promised and released yet another zero-day vulnerability for fully patched Windows 11 devices.

However, other researchers don’t see it as dangerous as some of their previous releases.

Chaotic Eclipse disclosed a zero-day called LegacyHive, which is a local privilege escalation (LPE) bug targeting Windows’ user hives.

Escalating privileges

A few months ago, a hacker/researcher with the alias Chaotic Eclipse started publishing functioning exploits for fully patched Windows 11 systems, all with PoCs, claiming that Microsoft...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE

Read more