Connect with us

News

Hackers are abusing unpatched Windows security flaws to hack into organizations

info

Published

on

Photo mosh getty windows logo.jpg

Hackers have broken into at least one organization using Windows vulnerabilities published online by a disgruntled security researcher over the last two weeks, according to a cybersecurity firm.

On Friday, cybersecurity company Huntress said in a series of posts on X that its researchers have seen hackers taking advantage of three Windows security flaws, dubbed BlueHammer, UnDefend, and RedSun. 

It’s unclear who the target of this attack is, and who the hackers are.

BlueHammer is the only bug among the three vulnerabilities being exploited that Microsoft has patched so far. A fix for BlueHammer was rolled out earlier this week. 

It appears that the hackers are exploiting the bugs by using exploit code that the security researcher published online. 

Earlier this month, a researcher who goes by Chaotic Eclipse published on their blog what they said was code to exploit an unpatched vulnerability in Windows. The researcher alluded to some conflict with Microsoft as the motivation behind publishing the code. 

“I was not bluffing Microsoft and I’m doing it again,” they wrote. “Huge thanks to MSRC leadership for making this possible,” they added, referring to Microsoft’s Security Response Center, the company’s team that investigates cyberattacks and handles reports of vulnerabilities.

Techcrunch event

San Francisco, CA
|
October 13-15, 2026

Days later, Chaotic Eclipse published UnDefend, and then earlier this week published RedSun. The researcher published code to exploit all three vulnerabilities on their GitHub page

All three vulnerabilities affect the Microsoft-made antivirus Windows Defender, allowing a hacker to gain high-level or administrator access to an affected Windows computer.

TechCunch could not reach Chaotic Eclipse for comment.

In response to a series of specific questions, Microsoft’s communications director Ben Hope said in a statement that the company supports “coordinated vulnerability disclosure, a widely adopted industry practice that helps ensure issues are carefully investigated and addressed before public disclosure, supporting both customer protection and the security research community.”

This is a case of what the cybersecurity industry calls “full disclosure.” When researchers find a flaw, they can report it to the affected software maker to help them fix it. At that point, usually the company acknowledges receipt, and if the vulnerability is legitimate, the company works to patch it. Often, the company and researchers agree on a timeline that establishes when the researcher can publicly explain their findings. 

Sometimes, for a variety of reasons, that communication breaks down and researchers publicly disclose details of the bug. In some cases, in part to prove the existence or severity of a flaw, researchers go a step further and publish “proof-of concept” code capable of abusing that bug.

When that happens, cybercriminals, government hackers, and others can then take the code and use it for their attacks, which prompts cybersecurity defenders to rush to deal with the fallout. 

“With these being so easily available now, and already weaponized for easy use, for better or for worse I think that ultimately puts us in another tug-of-war match between defenders and cybercriminals,” John Hammond, one of the researchers at Huntress who has been tracking the case, told TechCrunch. 

“Scenarios like these cause us to race with our adversaries; defenders frantically try to protect against ill-intended actors who rapidly take advantage of these exploits… especially now as it is just ready-made attacker tooling,” said Hammond.

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

News

Nigerian Wonderkid “Ostilo” Begins Trials With Turkish Giants Beşiktaş

info

Published

on

By

Adewale Quadri 1.jpeg

Former Nigeria U17 international Adewale Quadri, popularly known as “Ostilo” among teammates and close friends, has officially commenced trials with Turkish giants Beşiktaş J.K. youth team.

The highly-rated Nigerian youngster is currently being evaluated by the Istanbul-based club as he continues his pursuit of a breakthrough opportunity in European football.

Read Also: Diana Eze Sets New Personal Best at AGN Track & Field League in South Africa

Sources close to the player indicate that Quadri has already begun making positive impressions during the trial period with his performances, attitude, and work ethic attracting attention within the club setup.

The talented prospect has reportedly shown strong determination, technical ability, maturity on the ball, and attacking quality during training sessions and evaluation matches.

Known for his confidence, creativity, and energetic style of play, the former Nigeria U17 player continues to strengthen his reputation as one of the exciting young Nigerian talents aiming to establish themselves abroad.

Beşiktaş—popularly known as the Kara Kartallar (Black Eagles)—remain one of the biggest and most historic clubs in Turkish football, making the opportunity another important milestone in Quadri’s young career.

Football followers and supporters close to the player remain hopeful that the talented Nigerian can successfully complete the process and secure a permanent place within the club’s development system.

For Adewale Quadri, the trial represents another major step toward achieving his European football dream while proudly representing Nigeria on the international stage.

As the evaluations continue in Turkey, many will now be eagerly waiting for positive news regarding the future of the promising youngster known as “Ostilo.”

Continue Reading

Business

FAAN announces additional health screening measures, enhanced Ebola surveillance at Nigerian airports

info

Published

on

By

WhatsApp Image 2026 02 23 at 21.37.22.jpeg

The Federal Airports Authority of Nigeria (FAAN) has assured travellers and other airport users that enhanced health surveillance measures have been activated across the country’s international airports following renewed Ebola concerns in parts of Central Africa.

In a statement issued on Wednesday, FAAN said the measures were introduced in collaboration with Port Health Services, the Nigeria Centre for Disease Control and Prevention (NCDC) and other relevant agencies to strengthen preparedness and prevent possible health risks.

According to the authority, surveillance and passenger monitoring have been intensified, particularly for travellers arriving from high-risk regions.

“Passengers are being screened for symptoms associated with Ebola, and any suspected case will be promptly isolated and subjected to secondary health checks in line with established national and international health protocols,” the statement said.

FAAN noted that additional emergency response procedures have also been reinforced while airport personnel have undergone increased sensitisation as part of precautionary efforts.

PT WHATSAPP CHANNEL

The authority stressed that there is currently no confirmed Ebola case in Nigeria but said it remains vigilant in safeguarding public health and ensuring safe airport operations.

“FAAN remains vigilant and fully committed to safeguarding public health and maintaining safe airport operations,” the agency stated.

READ ALSO: FAAN nabs four unauthorised persons at Akure airport

Passengers were also advised to remain calm, cooperate with health screening procedures and report any symptoms to health officials at the airports.

The development comes as health authorities across parts of Africa continue to monitor Ebola-related concerns and strengthen border surveillance to prevent cross-border transmission.

Nigeria’s aviation and health authorities have previously activated similar emergency screening measures during periods of global and regional disease outbreaks, including the COVID-19 pandemic and earlier Ebola scares.


Continue Reading

Trending