all InfoSec news
A zero-day vulnerability (and PoC) to blind defenses relying on Windows event logs
Help Net Security www.helpnetsecurity.com
A zero-day vulnerability that, when triggered, could crash the Windows Event Log service on all supported (and some legacy) versions of Windows could spell trouble for enterprise defenders. Discovered by a security researcher named Florian and reported to Microsoft, the vulnerability is yet to be patched. In the meantime, the researcher has gotten the go-ahead from the company to publish a PoC exploit. The vulnerability and the PoC Florian found the bug while working on … More →
The post …
0 day acros security crash defenders defenses don't miss enterprise event event logs hot stuff intrusion detection legacy log logging logs microsoft poc researcher security security researcher service vulnerability windows windows event logs windows server zero-day zero-day vulnerability