Three Microsoft Defender Zero-Days Actively Exploited; Two Still Unpatched
Threat actors are exploiting three zero-day vulnerabilities in Microsoft Defender to gain elevated privileges.
Huntress is warning that threat actors are exploiting three recently disclosed security flaws in Microsoft Defender to gain elevated privileges in compromised systems. The activity involves the exploitation of three vulnerabilities that are codenamed BlueHammer (requires GitHub sign-in), RedSun, and UnDefend, all of which were released as zero-days by a researcher known as Chaotic Eclipse (
Vendors are matched automatically based on AI analysis. Verify with official sources.