All Topics
All Topics
Technology
Technology
Design
Design
Programming
Programming
Science
Science
News
News
Gaming
Gaming
Entertainment
Entertainment
Business
Business
Finance
Finance
Sports
Sports
Health
Health
Food
Food
Travel
Travel
Art
Art
Music
Music
Books
Books
Education
Education
Politics
Politics
Personal
Personal
No algorithm. No AI slop. No ads. Just RSS. Pro-human. Indie writers. Real journalism. Open web. Chronological. Hand toasted.

Anonymous researcher releases two new Windows zero-day exploits after Patch Tuesday

By

e12e

4d ago· 4 min readenNews

Summary

An anonymous security researcher (Nightmare-Eclipse/Chaotic Eclipse) has released two new Windows zero-day exploits — YellowKey (a BitLocker bypass) and GreenPlasma (a privilege escalation flaw granting SYSTEM access) — just after Microsoft's Patch Tuesday. This follows three other maliciously exposed zero-days earlier this year. Security experts warn these vulnerabilities pose serious risks, particularly YellowKey, which could make stolen laptops significantly more dangerous by bypassing BitLocker encryption.

Key quotes

· 3 pulled
Experts speaking to The Register warned that both vulnerabilities present serious security risks
Security pros warn YellowKey claim could make stolen laptops a much bigger problem
Nightmare-Eclipse, or Chaotic Eclipse, depending on which of their aliases you prefer, released details about YellowKey and GreenPlasma
Snippet from the RSS feed
Security pros warn YellowKey claim could make stolen laptops a much bigger problem

You might also wanna read

Microsoft zero-day feud escalates as researcher threatens major exploit release on July 14

The ongoing feud between Microsoft and security researcher Nightmare Eclipse (aka Chaotic Eclipse) has escalated, with the researcher having

gigcitygeek.com·2d ago

Microsoft zero-day feud escalates as researcher threatens major exploit release on July 14

The ongoing feud between Microsoft and security researcher Nightmare Eclipse (aka Chaotic Eclipse) has escalated, with the researcher having

theregister.com·1d ago

Nightmare-Eclipse: Rogue researcher releases six Windows zero-day exploits since April 2026

Nightmare-Eclipse is a rogue security researcher who has released six Microsoft Windows zero-day exploits (BlueHammer, RedSun, UnDefend, Yel

blog.barracuda.com·4d ago

Microsoft condemns uncoordinated Windows zero-day releases, researcher threatens further disclosures

Microsoft has responded to a campaign of uncoordinated Windows zero-day vulnerability releases by a pseudonymous researcher known as Nightma

therecord.media·1d ago

Microsoft criticizes uncoordinated disclosure of six zero-day vulnerabilities

Microsoft has criticized the irresponsible disclosure of six zero-day vulnerabilities in its products, named BlueHammer, GreenPlasma, MiniPl

briefly.co·2d ago

Microsoft threatens security researcher with criminal prosecution over public disclosure of Windows vulnerabilities, sparking community backlash

Microsoft published a blog post criticizing security researcher "Nightmare Eclipse" for publicly disclosing unpatched vulnerabilities (BlueH

thenextweb.com·1d ago