Ryx[verified]@PadhiyarRushiExploit
The tweet details a bypass for CVE-2025-33073 using Unicode homoglyphs and Kerberos coercion to achieve SYSTEM via NTLM relay, explicitly naming the exploit tools ntlmrelayx and krbrelayx, while noting mitigations in Windows 11 24H2 and Server 2025.
Rıdvan Yağlı[verified]@ridvanyagliPatch
Microsoft patched CVE‑2026‑24294 in the March 2026 update after a PoC was publicly released; users running Windows 11 24H2 or Windows Server 2025 should install the update if not already.
Lyrie.ai[verified]@lyrie_aiDisclosure
A researcher publicly disclosed CVE‑2026‑24294, an NTLM reflection bypass, along with a proof‑of‑concept, but no active exploitation or patch information is reported.
Lyrie.ai[verified]@lyrie_aiPoC
A researcher disclosed CVE-2026-24294, providing a PoC exploit that elevates privileges to SYSTEM on Windows Server 2025, and a patch is now available.
Lyrie.ai[verified]@lyrie_aiPoC
A researcher has publicly disclosed a new NTLM reflection bypass (CVE-2026-24294) and shared a PoC, but no exploit tools, active exploitation, or patch details are noted.
Lyrie.ai[verified]@lyrie_aiPoC
A researcher publicly disclosed CVE‑2026‑24294, a NTLM reflection bypass that can give SYSTEM privileges on Windows Server 2025, and shared PoC exploit code. A patch is now available to mitigate the vulnerability.
إبراهيم بوحيمد | Ibrahim Buhaimed[verified]@buhaimediDisclosure
Microsoft has officially disclosed technical details of CVE-2026-24294, describing it as a local elevation of privilege flaw in Windows SMB Server caused by improper authentication, which could grant SYSTEM privileges.
إبراهيم بوحيمد | Ibrahim Buhaimed[verified]@buhaimediPatch
Microsoft’s fix for CVE‑2025‑33073 only partially resolved the issue, prompting a new bypass vulnerability designated CVE‑2026‑24294.