[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"branding":3,"analytics":7,"article-fed-up-researcher-drops-windows-defender-zero-day-after-threats":10,"sections":35},{"siteName":4,"siteTagline":5,"publisherName":4,"contactEmail":6},"The Revision","Tech news, decoded.","editor@therevision.news",{"gaMeasurementId":8,"adsenseClientId":9},"G-ZW2MV82GYR","ca-pub-8533917693782264",{"article":11},{"id":12,"slug":13,"title":14,"dek":15,"body_md":16,"tags_json":17,"published_at":18,"created_at":19,"updated_at":20,"status":21,"review_note":22,"review_notes":23,"image_url":22,"persona_id":22,"persona_name":22,"section":24,"tags":25,"sources":30,"feedback":34,"feedback_at":22,"cost_usd":34,"total_tokens":34},4973,"fed-up-researcher-drops-windows-defender-zero-day-after-threats","Fed Up Researcher Drops Windows Defender Zero-Day After Threats","After Microsoft threatened legal action, a researcher published ShieldBreak, a Windows Defender flaw that lets attackers escalate privileges.","A security researcher just dropped a Windows Defender zero-day in public, and the backstory is messier than the bug itself.\n\nA researcher who goes by Nightmare Eclipse has publicly disclosed a new flaw in Windows Defender called ShieldBreak. The bug lets an attacker use the built-in antivirus tool itself to escalate privileges on a Windows machine. Nightmare Eclipse published the details despite Microsoft having previously threatened legal action against them. The disclosure turns what was a private standoff between researcher and vendor into a public one.\n\nSecurity tools like Defender run with deep system access, which is exactly what makes a flaw inside them so useful to an attacker chasing privilege escalation. That Microsoft reportedly reached for legal threats rather than a fix or a bounty arguably explains why this ended up as a public zero-day instead of a quiet patch: pressuring a researcher does not make a vulnerability disappear, it just removes their incentive to wait.\n\nVendors have learned this lesson before: squeeze a researcher hard enough, and the disclosure goes public instead of staying private.","[\"windows-defender\",\"zero-day\",\"microsoft\",\"vulnerability-disclosure\"]","2026-08-12T16:36:15.000Z","2026-08-15T00:05:14.857Z","2026-08-15T00:05:26.767Z","published",null,[],"security",[26,27,28,29],"windows-defender","zero-day","microsoft","vulnerability-disclosure",[31],{"name":32,"url":33},"PCMag","https:\u002F\u002Fwww.pcmag.com\u002Fnews\u002Fdisgruntled-researcher-discloses-new-zero-day-in-windows-antivirus",0,{"sections":36},[37,42,45,50,55,60,65,70,75,80,85,90,95,100],{"name":38,"slug":39,"count":40,"latest_published_at":41},"AI","ai",3293,"2026-08-20T04:00:00.000Z",{"name":43,"slug":24,"count":44,"latest_published_at":41},"Security",435,{"name":46,"slug":47,"count":48,"latest_published_at":49},"Policy","policy",210,"2026-08-19T09:32:27.000Z",{"name":51,"slug":52,"count":53,"latest_published_at":54},"Deals","deals",179,"2026-06-29T20:02:07.000Z",{"name":56,"slug":57,"count":58,"latest_published_at":59},"Hardware","hardware",140,"2026-08-19T18:25:42.000Z",{"name":61,"slug":62,"count":63,"latest_published_at":64},"Consumer Tech","consumer-tech",95,"2026-08-18T16:05:00.000Z",{"name":66,"slug":67,"count":68,"latest_published_at":69},"Science","science",90,"2026-08-19T18:41:02.000Z",{"name":71,"slug":72,"count":73,"latest_published_at":74},"Software","software",73,"2026-08-18T07:51:50.000Z",{"name":76,"slug":77,"count":78,"latest_published_at":79},"Dev Tools","dev-tools",69,"2026-08-18T04:00:00.000Z",{"name":81,"slug":82,"count":83,"latest_published_at":84},"Startups","startups",47,"2026-08-19T19:13:46.000Z",{"name":86,"slug":87,"count":88,"latest_published_at":89},"Gaming","gaming",41,"2026-07-09T04:00:00.000Z",{"name":91,"slug":92,"count":93,"latest_published_at":94},"General","general",33,"2026-08-18T22:18:13.000Z",{"name":96,"slug":97,"count":98,"latest_published_at":99},"Reviews","reviews",20,"2026-06-24T12:00:01.000Z",{"name":101,"slug":102,"count":103,"latest_published_at":104},"How-To","how-to",6,"2026-06-16T09:00:00.000Z"]