https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45584
-
One job. You had one job.
Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
-
One job. You had one job.
Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
@nyanbinary Ouch.
-
One job. You had one job.
Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
@nyanbinary Microsoft Offender
-
One job. You had one job.
Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
Successful exploitation of this vulnerability would require a remote, unauthenticated attacker to entice a local user to take multiple actions that results in Defender scanning a malicious file that has been quarantined.
This is something I love about some AV vulnerabilities - intentionally triggering detections as part of exploitation. Also had that with the Nightmare Eclipse Defender vulns & also had me giggle there
. I just ... feels right! -
@nyanbinary Microsoft Offender
@LucasWerkmeister the best defense is a good offense. This is why the A in AV now stands for Agentic, performing fully autonomous cyber offense operations from your laptop!
-
One job. You had one job.
Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
@nyanbinary maybe the 11 in windows 11 meant the cvss score?
-
One job. You had one job.
Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
@nyanbinary I'm sure they learned their lesson and won't let it ever happen again!

-
One job. You had one job.
Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
-
One job. You had one job.
Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
-
@nyanbinary I'm sure they learned their lesson and won't let it ever happen again!

Was it Defender that would execute JS without a sandbox and was trivially exploitable like…a few years ago? I think that was them.
-
@nyanbinary I'm sure they learned their lesson and won't let it ever happen again!

@catsalad I stripped Defender out of my Windows 10 LTSC installs and just use my estranged parents' Kaspersky family license lol
-
R relay@relay.infosec.exchange shared this topicR relay@relay.publicsquare.global shared this topic
-
One job. You had one job.
Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.
@nyanbinary they should fire more engineers, so they have more funds for copilot tokens
-
R relay@relay.an.exchange shared this topic
