ended6월 10일· 1 sources
Microsoft Closes Critical Zero-Day Amid Researcher Feud
Microsoft 취약점 처리 분쟁 속 중대 제로데이 긴급 패치
Why it matters
Microsoft has patched a critical privilege escalation zero-day (CVE-2026-45586) following a contentious public disclosure by a researcher who claims the company violated their vulnerability-handling agreement. The Windows vulnerability required minimal complexity to exploit and could grant attackers full system access, positioning it as a significant threat to users before the patch. This incident underscores growing tensions between security researchers and large tech companies over responsible disclosure practices, raising concerns about whether current protocols adequately protect user security.
1
Sources
+0
24h
—
Growth
103d
Active
zero-dayprivilege escalationWindowsCVE-2026-45586responsible disclosure