mirror of
https://github.com/Nightmare-Eclipse/RedSun.git
synced 2026-05-26 12:40:49 +00:00
Update README.md
This commit is contained in:
parent
173b3eb94d
commit
7456cc8cf0
1 changed files with 7 additions and 0 deletions
|
|
@ -1,2 +1,9 @@
|
||||||
# RedSun
|
# RedSun
|
||||||
The Red Sun vulnerability repository
|
The Red Sun vulnerability repository
|
||||||
|
|
||||||
|
Now, normally I would just drop the PoC code and let people figure it out. But I can't for this one, it's way too funny.
|
||||||
|
When Windows Defender realizes that a malicious file has a cloud tag, for whatever stupid and hilarious reason, the antivirus that's supposed to protect decides that it is a good idea to just rewrite the file it found again to it's original location. The PoC abuses this behaviour to overwrite system files and gain administrative privileges.
|
||||||
|
|
||||||
|
I think antimalware products are supposed to remove malicious files not be sure they are there but that's just me.
|
||||||
|
|
||||||
|

|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue