Tag

#privilege escalation

50 stories taggedprivilege escalation · page 2 of 4.

A Windows Server control panel with certificate management tools open, showing how unauthorized privilege escalation could occur through certificate authority a
Vulnerabilities

Certighost: The Windows Certificate Flaw That Hands Attackers the Keys to the Kingdom

A newly disclosed bug, CVE-2026-54121, lets any ordinary staff account quietly promote itself to top-level control of a Windows network by abusing the company's certificate server.

4 min read
A corporate IT dashboard on multiple monitors showing enterprise device management software interface with highlighted security warning indicators and system co
Vulnerabilities

$58 Certificate, Four Flaws: Researchers Show How SCCM Can Hand Attackers the Keys to an Entire Company

A security research team chained four weaknesses in Microsoft's enterprise device-management software to reach full system control, starting with nothing more than a standard company login.

5 min read
A computer chip manufacturing facility with Intel and AMD processor units visible under specialized lighting, tech specs and patch notes displayed on screens in
Vulnerabilities

Intel and AMD Quietly Patched Over 80 Security Flaws. Here Is What That Means For You.

Two of the biggest names in computer chips fixed a pile of serious vulnerabilities this Patch Tuesday. Some could let attackers take full control of an affected machine.

3 min read
A security researcher's workspace showing code editor with proof-of-concept exploit displayed, Windows Defender interface running in background, security bypass
Vulnerabilities

Researcher publishes 'ShieldBreak' code that claims to defeat a recent Microsoft Defender fix

A proof-of-concept from a researcher known as Chaotic Eclipse says the patch for CVE-2026-50656 can still be bypassed to gain full control of Windows machines.

3 min read
A Windows logo surrounded by cascading code fragments and system error warnings, with orange alert highlights spreading across the composition against a deep bl
Vulnerabilities

Windows kernel bug already under attack as Microsoft ships nearly 400 fixes

A flaw in a core Windows networking component is being used in real attacks to hand attackers full control of a machine.

3 min read
A USB port on the side of a laptop with a generic black USB stick partially inserted, the computer's screen in the background showing Windows 11 boot process or
Vulnerabilities

Plug-and-Play Trick Turns a Fake USB Stick Into Full Windows 11 Takeover

Researchers show how Windows' habit of auto-installing driver software can be twisted into SYSTEM-level control, no physical hardware required, and it works over Remote Desktop too.

4 min read
A Linux system terminal window showing kernel code from 2008 with a privilege escalation exploit running, displaying root access being granted with an alert ove
Vulnerabilities

Eighteen-Year-Old Bug in Linux Networking Code Hands Attackers the Keys to the Machine

A flaw in Linux's SCTP networking that has been sitting in the code since 2008 lets a local user become root and break out of a container. Fixed kernels shipped on 3 August.

3 min read
A Linux terminal window with root privilege indicators flashing, memory corruption data visualized as corrupted bytes on the screen
Vulnerabilities

Linux Kernel Flaw 'OVSwrap' Hands Local Users Root on Around 800 Builds

A memory corruption bug in Open vSwitch, tracked as CVE-2026-64531, lets ordinary users on default Linux systems become administrator, and a working exploit is already public.

4 min read
A security operations center wall of screens showing AI agent activity across enterprise applications, with each screen highlighting different sensitive systems
AI Security

Obsidian Security Raises $85 Million to Watch What AI Agents Do Inside Your Company's Apps

The startup, now valued at $1.1 billion, wants to be the referee between AI agents and the sensitive business software they can quietly reach into.

4 min read
A hosting control panel on a computer screen showing database management interfaces, with visual indicators highlighting the boundary between user-level account
Vulnerabilities

cPanel patches critical database flaw that let hosting customers run SQL as root

A newly disclosed bug, CVE-2026-58048, crossed the line between a single hosting account and the server's master database identity. cPanel has shipped a targeted fix.

3 min read
A cloud architecture diagram with forgotten digital keys scattered throughout the infrastructure, an AI agent waking up and making unexpected requests at odd ho
Identity & Access

The 'Ghost Credentials' Problem: How Forgotten Digital Keys Are Leaving Cloud Systems Wide Open

A sleeping AI agent that woke up and started making requests at odd hours led a security researcher to a sprawling mess of forgotten digital keys, and a free tool to help organisations find them before attackers do.

4 min read
Computer terminal showing Linux kernel source code with highlighted vulnerability sections, surrounded by technical documentation and debugging tools in a devel
Vulnerabilities

Researcher Publishes Linux Kernel Root Exploit Built With AI Help

CVE-2026-53264, a use-after-free flaw in the kernel's traffic-control code, lets an ordinary Linux user gain full system control on CentOS Stream 9.

3 min read
Cloud infrastructure dashboard showing Azure and Google Cloud administrator control panels, with subtle indicators of unauthorized privilege escalation attempts
Cloud Security

Two Cloud Giants, Two Flaws, Zero Bug Bounties: The 'Confused Deputy' Problem That Won't Go Away

A security researcher found ways to silently hijack administrator control over both Microsoft Azure and Google Cloud infrastructure. Neither company paid a reward. One quietly fixed its flaw without saying so.

5 min read
Azure cloud platform dashboard on a monitor displaying automation settings, with default configuration options highlighted and exposed identity credentials visi
Vulnerabilities

A Single Default Setting in Azure Automation Could Have Let Hackers Steal Any Tenant's Cloud Identity

A researcher found that Microsoft's cloud automation service was, by default, leaving account identities visible to the public internet, giving any attacker a path to impersonate other organisations' privileged accounts.

3 min read
Windows Active Directory network diagram displayed on a monitor, with visual representation of privilege escalation path highlighted, domain controller hierarch
Vulnerabilities

Certighost: New Exploit Turns Ordinary Windows Users Into Domain Controllers

A public proof-of-concept lets any low-privileged Active Directory account impersonate a domain controller and retrieve the master key to every user's login on the network.

3 min read
© 2026 Threat Vectr