All Versions of Windows Are Vulnerable to a New Zero-Day Exploit


"If they already have access to the endpoint"

While notable, and sort of serious.. if an attacker can actually get onto a system and use this, a priv esclalation would be the least of the worries.

I'd actually be curious if there is also a remote code vulnerability (likely unknown) that is being used with this.. and if this is part of a larger attack chain.

I suppose you could phish a user and move laterally.. windows is great for living off the land.. but to make this usable there has to be a lot of other misconfigurations in the organization.. and it's a lot of effort

