Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch Tuesday
LegacyHive is a new proof-of-concept (PoC) exploit published by security researcher Chaotic Eclipse, also known as Nightmare-Eclipse.
It has been characterized as an arbitrary hive load elevation of privileges vulnerability in the Windows User Profile Service. One essential system component that controls user accounts and environments is the Windows User Profile Service, or ProfSvc.
According to Chaotic Eclipse, the PoC requires a third login (which may be an administrator account) and an additional standard user credential. The target user hive will be mounted in the current user classes root if the PoC is successful.
The original vulnerability did not require extra user credentials and was not restricted to the "usrclass.dat" hive, according to the researcher. The exploit was r...

