Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Ex-school district employee jailed for hacks on former employer

    June 13, 2026

    Scientists Discover Vast Ancient ‘Necropolis’ Teeming With Strange New Creatures

    June 13, 2026

    Over 400 Arch Linux packages compromised to push rootkit, infostealer

    June 13, 2026
    Facebook X (Twitter) Instagram
    • Demos
    • Technology
    • Gaming
    • Buy Now
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Canadian Cyber WatchCanadian Cyber Watch
    • Home
    • News
    • Alerts
    • Tips
    • Tools
    • Industry
    • Incidents
    • Events
    • Education
    Subscribe
    Canadian Cyber WatchCanadian Cyber Watch
    Home»News»Microsoft patches YellowKey, GreenPlasma, MiniPlasma zero-days
    News

    Microsoft patches YellowKey, GreenPlasma, MiniPlasma zero-days

    adminBy adminJune 10, 2026No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Microsoft

    On Tuesday, Microsoft patched two zero-day vulnerabilities that let attackers gain SYSTEM privileges on fully patched Windows systems, and a third one that grants access to BitLocker-protected drives.

    All three security flaws were disclosed last month by a security researcher using the “Nightmare Eclipse” handle in protest over how the Microsoft Security Response Center (MSRC) handles the disclosure process.

    Dubbed “GreenPlasma” and “MiniPlasma,” the two privilege escalation vulnerabilities (tracked as CVE-2026-45586 and CVE-2020-17103) were found in the Collaborative Translation Framework (CTFMON) and the Cloud Files Mini Filter Driver, and they allow local attackers to obtain a shell with SYSTEM permissions on fully patched Windows systems.

    image

    The third zero-day patched yesterday is known as YellowKey (tracked as CVE-2026-45585) and acts as a backdoor in the Windows Recovery Environment (WinRE), which is used to repair boot-related issues in Windows.

    Attackers with physical access to the targeted devices can use a YellowKey exploit to bypass BitLocker protection on unpatched Windows 11 and Windows Server 2022/2025 systems.

    Microsoft shared mitigation measures for YellowKey to defend against potential attacks that exploit it in the wild, while also complaining that the proof-of-concept had “been made public violating coordinated vulnerability best practices.”

    On Tuesday, Microsoft fixed the GreenPlasma, MiniPlasma, and YellowKey security vulnerabilities as part of its June 2026 Patch Tuesday updates.

    Over the past several months, Nightmare Eclipse has also released proof-of-concept exploits for BlueHammer (CVE-2026-33825) and RedSun (no identifier), two local privilege escalation (LPE) zero-days which are now actively exploited in attacks.

    More recently, the researcher also leaked UnDefend, another zero-day that attackers with standard user permissions can exploit to block Microsoft Defender definition updates, and this Tuesday, a Microsoft Defender zero-day exploit named “RoguePlanet” that lets threat actors spawn command prompts with SYSTEM privileges.

    Microsoft initially reacted to these zero-day leaks with threats of legal action, but backtracked following massive blowback on social media and said that it would work with law enforcement when security researchers “breaks the law and engages in malicious activity causing real harm to our customers.”


    article image

    Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.

    The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.

    Get the whitepaper



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleSSA-860189 V1.0: Multiple Vulnerabilities in SINEC INS Before V1.0 SP2 Update 6
    Next Article CVE-2026-11853 | THREATINT
    admin
    • Website

    Related Posts

    News

    Ex-school district employee jailed for hacks on former employer

    June 13, 2026
    News

    Scientists Discover Vast Ancient ‘Necropolis’ Teeming With Strange New Creatures

    June 13, 2026
    News

    Over 400 Arch Linux packages compromised to push rootkit, infostealer

    June 13, 2026
    Add A Comment

    Comments are closed.

    Demo
    Top Posts

    Catchy & Intriguing

    March 17, 202674 Views

    IP Address Investigations and Local OSINT

    March 20, 202632 Views

    Defending Canada’s Digital Frontier: Combating Phishing, Social Engineering, Ransomware, and Malware

    March 23, 202629 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    85
    Featured

    Pico 4 Review: Should You Actually Buy One Instead Of Quest 2?

    January 15, 2021 Featured
    8.1
    Uncategorized

    A Review of the Venus Optics Argus 18mm f/0.95 MFT APO Lens

    January 15, 2021 Uncategorized
    8.9
    Editor's Picks

    DJI Avata Review: Immersive FPV Flying For Drone Enthusiasts

    January 15, 2021 Editor's Picks

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Demo
    Most Popular

    Catchy & Intriguing

    March 17, 202674 Views

    IP Address Investigations and Local OSINT

    March 20, 202632 Views

    Defending Canada’s Digital Frontier: Combating Phishing, Social Engineering, Ransomware, and Malware

    March 23, 202629 Views
    Our Picks

    Ex-school district employee jailed for hacks on former employer

    June 13, 2026

    Scientists Discover Vast Ancient ‘Necropolis’ Teeming With Strange New Creatures

    June 13, 2026

    Over 400 Arch Linux packages compromised to push rootkit, infostealer

    June 13, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • Home
    • Technology
    • Gaming
    • Phones
    • Buy Now
    © 2026 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.