ZeroHour
Story · 1 source · 1 articlefirst updated ()

Microsoft Defender: ShieldCrash PoC Reportedly Bypasses CVE-2026-69414 Patch as Microsoft Details AI-Themed Attack Campaigns

What's new: No prior merged summary exists for this story. Newly added: (1) SOCRadar's 2026-09-10 report of the ShieldCrash PoC demonstrating a bypass of Microsoft's CVE-2026-69414 patch, with exploitation status and affected versions unconfirmed; (2) Microsoft Threat Intelligence's 2026-09-10 disclosure of AI-themed phishing, AiTM, and malvertising campaigns, including a ChatGPT-themed phishing wave of up…
Merged summary · glm-5.3-flash · rewritten as coverage arrives

SOCRadar reports a new proof-of-concept dubbed ShieldCrash that bypasses Microsoft's fix for CVE-2026-69414 (ShieldBreak), a high-severity elevation-of-privilege flaw in the Microsoft Malware Protection Engine used by Defender. Separately, Microsoft Threat…

SOCRadar reported on 2026-09-10 that a new proof-of-concept called ShieldCrash demonstrates that Microsoft's published fix for CVE-2026-69414 (ShieldBreak) can be bypassed. CVE-2026-69414 is a high-severity elevation-of-privilege vulnerability in the Microsoft Malware Protection Engine, the engine behind Microsoft Defender; the available text does not specify affected versions or confirm whether the bypass has been used in real attacks. The same day, Microsoft Threat Intelligence published details of criminal campaigns abusing trust in popular AI brands: a ChatGPT-themed phishing campaign sent up to 100,000 emails in one day to steal payment card data; a Claude-themed campaign used adversary-in-the-middle techniques to harvest credentials and access tokens; malvertising for a fake AI Windows plugin delivered the Vidar infostealer; and fraudulent DeepSeek installers were distributed via GitHub. Initial access broker Storm-3075 used AI-themed malvertising to distribute payloads for multiple downstream actors. Microsoft states the AI services themselves were not compromised and highlights Defender protections such as Safe Links, Safe Attachments, and attack disruption against these multi-stage lures.

  • CVE-2026-69414 (ShieldBreak) is a high-severity elevation-of-privilege vulnerability in the Microsoft Malware Protection Engine used by Microsoft Defender; Microsoft previously released a fix.
  • A new proof-of-concept dubbed ShieldCrash, reported by SOCRadar on 2026-09-10, shows the released fix for CVE-2026-69414 can be bypassed; affected versions and real-world exploitation are not detailed in the available text.
  • A ChatGPT-themed phishing campaign sent up to 100,000 emails in a single day to steal payment card data, per Microsoft Threat Intelligence.
  • A Claude-themed campaign used adversary-in-the-middle techniques to harvest credentials and access tokens.
  • Malvertising for a fake AI Windows plugin delivered the Vidar infostealer, and fraudulent DeepSeek installers were distributed through GitHub.
  • Initial access broker Storm-3075 used AI-themed malvertising to distribute payloads for multiple downstream actors.
  • Microsoft notes the AI services themselves (ChatGPT, Copilot, Claude, DeepSeek) were not compromised, and points to Defender protections including Safe Links, Safe Attachments, and attack disruption.

Coverage timeline

  1. · 7d ago
    SOCRadar· 62
    ShieldCrash PoC: Microsoft Defender Fix Bypass

    A ShieldCrash proof-of-concept bypasses Microsoft's patch for CVE-2026-69414, a high-severity elevation-of-privilege flaw in the Microsoft Malware Protection Engine.

Vulnerabilities in this storyAll →

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2026-69414
Local Elevation of Privilege in Microsoft Defender Malware Protection Engine

CVE-2026-69414, publicly dubbed 'ShieldBreak', is a high-severity (CVSS 3.1: 7.8) elevation-of-privilege flaw in the Microsoft Malware Protection Engine (MMPE) that powers Microsoft Defender, rooted in improper access control and improper privilege management (CWE-284/CWE-269). It is triggered locally: an attacker who already holds low privileges on the machine needs no user interaction (AV:L/AC:L/PR:L/UI:N) to trip the engine's flawed access checks, and successful exploitation yields high impact to confidentiality, integrity, and availability. News coverage reports public PoCs released under the 'ShieldBreak'/'ShieldCrash' names demonstrating SYSTEM-level access on Defender-protected Windows systems, including claims that the shipped patch can be bypassed and arbitrary files read as SYSTEM. Because MMPE ships as the scan engine inside Microsoft Defender, effectively every Defender-protected Windows 10/11 endpoint and server is potentially affected, though the source data specifies no affected engine version ranges. There is no confirmed in-the-wild exploitation (EPSS 0.6%, absent from CISA KEV), but given the public PoC claims, defenders should assume working exploit code exists.

Do: Ensure Microsoft Defender and its Malware Protection Engine are fully up to date by installing the latest antimalware platform and security intelligence (definition) updates via Windows Update, WSUS/SCCM/Intune, or Defender for Endpoint, and verify the installed engine version against Microsoft's advisory since PoC reports claim the initial patch can be bypassed. Given the local, low-privilege attack path, prioritize hosts where untrusted users or code run locally, such as shared servers, RDS/terminal hosts, and developer workstations. Monitor Microsoft and researcher channels for follow-up engine updates or revised guidance addressing the reported patch bypass.

7.8<1%
  • Microsoft Malware Protection Engine (used in Microsoft Defender)
masshundreds of millions of Windows endpoints (MMPE is bundled with Microsoft Defender, the default antimalware on modern Windows)