‘Exactly the same issue that Google’s project zero reported to Microsoft is still present, unpatched’: Chaotic Eclipse strikes again with another worrying Windows security flaw



  • Chaotic Eclipse Researcher Reveals New Zero-Day Windows 11 Affecting Cloud Filter Driver
  • MiniPlasma, originally tracked as CVE-2020-17103, was reported years ago but remains exploitable despite previous patch attempts.
  • It is the sixth vulnerability leaked by the researcher, highlighting ongoing disputes with Microsoft’s handling of bug reports.

Threat actors could escalate privileges and gain SYSTEM access on a fully patched Windows 11 device thanks to an unpatched vulnerability that supposedly should have been fixed years ago, new reports claim.

A researcher with the alias Chaotic Eclipse recently revealed a proof-of-concept (PoC) exploit for a zero-day vulnerability that they called “MiniPlasma.” In a new GitHub entry, the researcher said that the bug affects the cloud filter driver ‘cldflt.sys’ and its routine ‘HsmOsBlockPlaceholderAccess’.

Leave a Comment

Your email address will not be published. Required fields are marked *