Cybersecurity firm Huntress reported that hackers have exploited vulnerabilities in Windows systems, resulting in breaches of at least one organization. The attacks are utilizing three specific flaws, identified as BlueHammer, UnDefend, and RedSun, with the exploit code made public by a researcher named Chaotic Eclipse.
Microsoft has issued a patch for BlueHammer, the only flaw among the trio that has been addressed so far. The vulnerability impacts Windows Defender, enabling unauthorized access to affected systems. Despite the patch, the remaining vulnerabilities remain unaddressed, raising concerns about further exploits.
Chaotic Eclipse, who has a notable history of conflict with Microsoft, published the exploit code for these vulnerabilities on their GitHub page earlier this month, asserting their motivations stem from dissatisfaction with the tech giant. Microsoft has acknowledged the practice of coordinated vulnerability disclosure, emphasizing its importance in the cybersecurity landscape.