
LegacyHive Windows Zero-Day Lets Attackers Hijack Administrator Registry Hives
A newly disclosed local privilege escalation technique allows non-administrator Windows users to tamper with an administrator’s registry hive, opening the door to code execution at the administrator’s next login. Security researcher Will Dormann detailed the flaw after examining a proof-of-concept tool called LegacyHive, released by developer NightmareEclipse on a self-hosted Git instance. LegacyHive exploits inconsistent […]
The post LegacyHive Windows Zero-Day Lets Attackers Hijack Administrator Registry Hives appeared first on Cyber Security News.