Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Exploiting a Leaked Thread Handle

Summary

A bug in the Windows Secondary Logon service, fixed as MS16-032, leaks a fully accessible thread handle from a privileged process, enabling privilege escalation without memory corruption.
Published
Collected

original ↗