Pirat_Nation 🔴[verified]@Pirat_NationActive Exploitation
Microsoft has released patches for 167 CVEs, including two zero-days—CVE-2026-32201, actively exploited in the wild, and CVE-2026-33825 that grants SYSTEM-level access. Users, especially those running SharePoint or Office, should install the updates immediately.
International Cyber Digest[verified]@IntCyberDigestActive Exploitation
Three zero‑day CVEs in Windows Defender are actively exploited in the wild, enabling privilege escalation, SAM hash extraction, binary overwrite, and denial‑of‑service attacks.
impulsive[verified]@weezerOSINTGeneral
The post enumerates three Windows zero‑days, notes a patch for one, highlights a threat of a forthcoming RCE, but provides no PoC or evidence of active exploitation.
辻 伸弘 (nobuhiro tsuji)[verified]@ntsujiPoC
Microsoft disclosed a zero‑day privilege‑escalation flaw in Defender (CVE‑2026‑33825), a PoC has been posted, no active exploitation yet, and a patch was released on Patch Tuesday.
ɐʞsǝs[verified]@akses_0x00Patch
The tweet confirms that applying the patch for CVE-2026‑33825 allows RedSun to function normally, with no indication of PoC or active exploitation.
Nicolas Krassas[verified]@DinosnPoC
BlueHammer publicly discloses CVE‑2026‑33825, providing both a patch and a proof‑of‑concept repository for the vulnerability.
إبراهيم بوحيمد | Ibrahim Buhaimed[verified]@buhaimediGeneral
The tweet alleges Microsoft has threatened legal action against a researcher for publishing six zero‑day CVEs, but it provides no technical details, exploit code, or evidence of active exploitation.
kokumօtօ[verified]@__kokumotoPoC
RedSun is a newly disclosed Windows Defender privilege‑escalation zero‑day that is publicly accompanied by a PoC, with no indication of active exploitation or patches yet.