Loading...

Welcome to the SOCpedia portal

Latest updates, articles, and analysis from the cybersecurity world.

Read the news

Let wisdom lead, and silence protect

News

ShieldBreak — Windows Defender 0-day vulnerability AI AI

1. Description of the exploitation mechanism for a SOC analystShieldBreak is a local privilege escalation chain to NT AUTHORITY\SYSTEM, claimed by the author to be a bypass of the fix for CVE-2026-50656 (RoguePlanet) in Microsoft Defender. For exploitation, the attacker already needs the ability to…

12.08.2026 23:12 | 234

Plug & Pwn: Gaining SYSTEM Privileges via Windows Plug and Play AI

Researchers demonstrated the Plug & Pwn attack chain, which allows code execution with NT AUTHORITY\SYSTEM privileges on a fully patched Windows 11 system without requiring user interaction or administrator privileges.The attack exploits the Windows Plug and Play (PnP) mechanism: when a USB device …

11.08.2026 22:25 | 180

SOCpedia - knowledge platform

This section contains materials on SOC and Blue Team practices: articles, news, books, and translations.