⤷ Title: CVE-2025-5491: Acer Control Center Bug Allows Remote Code Execution as NT AUTHORITY\SYSTEM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Jun 2025 03:18:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Acer #ControlCenter #CVE_2025_5491 #cybersecurity #Named Pipe #NT AUTHORITY\SYSTEM #privilege escalation #rce #Remote Code Execution #Vulnerability #windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Jun 2025 03:18:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Acer #ControlCenter #CVE_2025_5491 #cybersecurity #Named Pipe #NT AUTHORITY\SYSTEM #privilege escalation #rce #Remote Code Execution #Vulnerability #windows
Daily CyberSecurity
CVE-2025-5491: Acer Control Center Bug Allows Remote Code Execution as NT AUTHORITY\SYSTEM
A flaw (CVE-2025-5491) in Acer ControlCenter allows remote, unauthenticated attackers to escalate privileges to NT AUTHORITYSYSTEM
⤷ Title: Windows Update Flaw: SYSTEM Privilege Escalation Via Arbitrary Folder Deletion, PoC Available!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 10 Jul 2025 00:50:51 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #LPE #Microsoft #NT AUTHORITY\SYSTEM #privilege escalation #proof_of_concept #symbolic link #Windows Update
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 10 Jul 2025 00:50:51 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #LPE #Microsoft #NT AUTHORITY\SYSTEM #privilege escalation #proof_of_concept #symbolic link #Windows Update
Daily CyberSecurity
Windows Update Flaw: SYSTEM Privilege Escalation Via Arbitrary Folder Deletion, PoC Available!
A Windows Update flaw (CVE-2025-48799) allows SYSTEM privilege escalation via arbitrary folder deletion using symlinks on multi-drive systems. PoC available. Patch now!
⤷ Title: The Admin’s Shadow: How Hackers Turned the Nezha Monitoring Tool into a Stealth RAT
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 24 Dec 2025 02:38:40 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Security 2025 #Evasion #Nezha #NT AUTHORITY\SYSTEM #Ontinue #open source #post_exploitation #Qualys #RAT #RMM Abuse #Root Access
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 24 Dec 2025 02:38:40 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Security 2025 #Evasion #Nezha #NT AUTHORITY\SYSTEM #Ontinue #open source #post_exploitation #Qualys #RAT #RMM Abuse #Root Access
Information Security News
The Admin’s Shadow: How Hackers Turned the Nezha Monitoring Tool into a Stealth RAT
Threat actors have begun repurposing a legitimate server monitoring tool as a ready-made platform for remotely controlling systems that have already been compromised. According to the Ontinue Cybe…
⤷ Title: High-Severity WatchGuard Agent Flaws Grant Full SYSTEM Privileges on Windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 03:20:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #CVE_2026_6787 #CVE_2026_6788 #cybersecurity #endpoint protection #infosec #NT AUTHORITY\SYSTEM #Patch Alert #privilege escalation #WatchGuard #Windows Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 03:20:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #CVE_2026_6787 #CVE_2026_6788 #cybersecurity #endpoint protection #infosec #NT AUTHORITY\SYSTEM #Patch Alert #privilege escalation #WatchGuard #Windows Security
Daily CyberSecurity
High-Severity WatchGuard Agent Flaws Grant Full SYSTEM Privileges on Windows
WatchGuard Agent v1.25.03.0000 fixes critical privilege escalation flaws (CVE-2026-6787) and buffer overflows. Secure your Windows endpoints and patch now!
⤷ Title: BAADTokenBroker Abuses Microsoft Entra ID Device-Bound Keys for PRT Hijacking
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:49:46 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Azure AD #BAADTokenBroker #cloud security #Device_Bound Keys #Kerberos #Microsoft Entra ID #NT Hash #post_exploitation #PRT Cookie #red teaming #TGT
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:49:46 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Azure AD #BAADTokenBroker #cloud security #Device_Bound Keys #Kerberos #Microsoft Entra ID #NT Hash #post_exploitation #PRT Cookie #red teaming #TGT
Penetration Testing Tools
BAADTokenBroker Abuses Microsoft Entra ID Device-Bound Keys for PRT Hijacking
Master Microsoft Entra ID post-exploitation with BAADTokenBroker. Learn how to request PRT cookies and abuse Entra Kerberos to acquire TGTs and NT hashes.
⤷ Title: Windows PnP Attack Chain Turns a USB Plug Into SYSTEM: Details and PoC Now Public
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 08:05:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #DEF CON 34 #NT AUTHORITY SYSTEM #Plug and Play #privilege escalation #Windows PnP attack
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 08:05:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #DEF CON 34 #NT AUTHORITY SYSTEM #Plug and Play #privilege escalation #Windows PnP attack
Daily CyberSecurity
Windows PnP Attack Chain Turns a USB Plug Into SYSTEM: Details and PoC Now Public
TL;DR Two Accenture researchers showed that plugging a USB device into Windows can hand an attacker SYSTEM. The chain needs no admin rights and no logged-in user. Both the vulnerability details an…