Hacker Discloses New Windows Zero-Day Exploit On Twitter

  • 24 October 2018
  • 0 replies
  • 155 views

Userlevel 7
Badge +54
October 23, 2018 By Swati Khandelwal
 
 

A security researcher with Twitter alias SandboxEscaper—who two months ago publicly dropped a zero-day exploit for Microsoft Windows Task Scheduler—has yesterday released another proof-of-concept exploit for a new Windows zero-day vulnerability.

SandboxEscaper posted a link to a Github page hosting a proof-of-concept (PoC) exploit for the vulnerability that appears to be a privilege escalation flaw residing in Microsoft Data Sharing (dssvc.dll).

The Data Sharing Service is a local service that runs as LocalSystem account with extensive privileges and provides data brokering between applications. Full Article.

0 replies

Be the first to reply!

Reply