Add files via upload
This commit is contained in:
parent
0b4a42e35c
commit
1c711364e5
1 changed files with 40 additions and 0 deletions
40
Windows-Defender-bypass-authentication/Docs/report.txt
Normal file
40
Windows-Defender-bypass-authentication/Docs/report.txt
Normal file
|
|
@ -0,0 +1,40 @@
|
|||
## Title: Windows Defender-4.18.2104.10, Engine Version-1.1.17300.4, Antivirus Version-1.321.69.0 User-Bypass-Athentication
|
||||
## Author: nu11secur1ty
|
||||
## Date: 09.14.2022
|
||||
## Vendor: https://www.microsoft.com/
|
||||
## Software: https://www.microsoft.com/en-us/windows/comprehensive-security
|
||||
## Reference: https://github.com/nu11secur1ty/Windows11Exploits/tree/main/Windows-Defender-bypass-authentication
|
||||
|
||||
|
||||
## Description:
|
||||
The Windows Defender-4.18.2104.10, (Engine Version-1.1.17300.4, and Antivirus Version-1.321.69.0), is suffering from User Bypass Authentication.
|
||||
The malicious user can transport a malicious compressed `jpg` file by using a USB-flash drive or whatever device to infect the poor victim - all normal users.
|
||||
The victim can infect a lot of computers if he spread this `jpg` file hows in internal or external networks, it's depending on the case.
|
||||
This can be done with a user account without any restriction from Windows Defender!
|
||||
|
||||
## WARNING:
|
||||
This is not a joke!
|
||||
Keep your Windows Defender up to the date!
|
||||
This could be saving you before will be late for defense!
|
||||
|
||||
##STATUS:
|
||||
HIGH Vulnerability
|
||||
|
||||
[+]Exploit:
|
||||
[href](https://github.com/nu11secur1ty/Windows11Exploits/tree/main/Windows-Defender-bypass-authentication/Exploit)
|
||||
|
||||
## Reproduce:
|
||||
[href](https://github.com/nu11secur1ty/Windows11Exploits/tree/main/Windows-Defender-bypass-authentication)
|
||||
|
||||
## Proof and Exploit:
|
||||
[href](https://streamable.com/qbufr3)
|
||||
|
||||
|
||||
--
|
||||
System Administrator - Infrastructure Engineer
|
||||
Penetration Testing Engineer
|
||||
Exploit developer at https://packetstormsecurity.com/
|
||||
https://cve.mitre.org/index.html and https://www.exploit-db.com/
|
||||
home page: https://www.nu11secur1ty.com/
|
||||
hiPEnIMR0v7QCo/+SEH9gBclAAYWGnPoBIQ75sCj60E=
|
||||
nu11secur1ty <http://nu11secur1ty.com/>
|
||||
Loading…
Add table
Add a link
Reference in a new issue