Vulnerability research

OPENEDR

Two SYSTEM LPEs and three local denial-of-service findings

Five runtime-validated vulnerabilities across privileged service trust, RPC command execution, kernel-monitor control, nonpaged-pool pressure, and telemetry controls.

Privilege impact
2 × SYSTEM LPE
Availability impact
3 × local DoS
Evidence
PoCs, reports, hashes, event logs
X64DBG

Long UTF-8 mapped filename crash

A UTF-16 mapped path could expand beyond a fixed destination after UTF-8 conversion, causing an invalid-argument fast fail. The submitted fix bounds and terminates the copy.

Impact
Debugger termination / DoS
Artifact
Source fix and reproduction
View pull request
MICROSOFT

Windows virtualization infrastructure

Kernel memory-safety faults in VBS and virtualization infrastructure: local denial-of-service paths in vid.sys and a separate local elevation-of-privilege issue.

INTEL

Kernel memory-safety research

Three distinct local denial-of-service vulnerabilities caused by kernel memory-safety faults in a Windows networking component.

IDA

Decoder and overlapping-instruction edge cases

Instruction-decoder inconsistencies and analysis seams around overlapping instruction streams.

MANDIANT FLOSS

Code-execution and parser robustness findings

Parser failures while processing adversarial binaries, including a code-execution vulnerability.

TINYINST

Dynamic binary instrumentation security findings

BINARY NINJA

Loader robustness and denial of service

Loader bugs exercised through malformed binary input, including denial-of-service behavior.