FR
live
Security High CVSS 7.8

ShieldCrash bypasses Microsoft Defender’s ShieldBreak fix to read files as SYSTEM

On September 9, 2026, researcher Chaotic Eclipse published ShieldCrash, a proof of concept that bypasses CVE-2026-69414 (ShieldBreak), the privilege-escalation flaw Microsoft claimed to have patched in Defender’s antimalware engine. Check your Malware Protection Engine version and treat the EDR itself as attack surface to monitor.

A row of identical closed server cabinet doors, one door left ajar with a sliver of amber light escaping the gap.

September 9, 2026. Security researcher Chaotic Eclipse published ShieldCrash, a proof of concept that bypasses the fix Microsoft claims to have applied to CVE-2026-69414, the privilege-escalation flaw nicknamed ShieldBreak in the Microsoft Defender antimalware engine. The demo achieves an arbitrary file read with SYSTEM privileges, the highest access level on Windows, and the researcher says all supported Windows versions remain vulnerable, including after the September 2026 updates. Why it matters: the tool meant to protect endpoints becomes itself a read primitive that exposes the machine’s secrets.

A fix that did not close everything

ShieldBreak, tracked as CVE-2026-69414 with a CVSS 7.8 score, was reported by Chaotic Eclipse in August 2026. It is a privilege escalation in the Microsoft Malware Protection Engine, the component that scans files and processes at the heart of Defender. Microsoft patched it a few days before September 9 by shipping engine version 1.1.26080.3 — a silent update requiring no customer action that does not affect machines where Defender is disabled.

ShieldCrash is the researcher’s answer to that patch. His wording is blunt: “Microsoft has failed to properly patch ShieldBreak CVE-2026-69414. Under specific conditions it is still possible to trigger the exact same problem that was caused by ShieldBreak. While Microsoft fixed several things to prevent re-exploiting the issue, they missed a spot where ShieldBreak can still be exploited.”

In practice, the PoC demonstrates an arbitrary file read as SYSTEM on a fully patched Windows machine. The researcher describes it as a “basic version” for now: he published just enough code to show the patch does not fully block ShieldBreak, and has left the door open to a full SYSTEM-level exploit later.

Why a mere file read hurts

A busy defender might shrug: a file read, with no code execution, is less serious than an RCE. That is a misreading. With SYSTEM access, arbitrary read reaches the SAM database, DPAPI secrets, LSA keys, configuration files and certificates — everything an attacker turns into lateral movement or targeted exfiltration.

The severity also comes from the component at fault. The Malware Protection Engine runs with the highest privileges on the system precisely because it must inspect everything entering and leaving. A flaw in that component inverts the relationship: instead of watching for threats, it becomes the channel through which an attacker who is already present — even with a plain user account — reaches the top of the machine.

Finally, the patch is invisible. Unlike a Patch Tuesday you schedule, the antimalware engine update arrives over the automatic update channel. The risk is not that it fails to arrive; it is that you believe the machine is protected while the installed version is exactly the one ShieldCrash bypasses.

One researcher, a series of PoCs, a message

ShieldCrash is not an isolated case. In recent weeks, Chaotic Eclipse has published PoCs for four other security products: CrowdStrike Falcon (FalconFlank), Kaspersky (HardBreacher), Avast Antivirus (PrettyPrague) and NVIDIA (GreenSection). HardBreacher and PrettyPrague have since been patched by their vendors; CrowdStrike told The Hacker News it is investigating the report.

That sequence tells a truth security teams are reluctant to admit: the EDR is itself attack surface. Security agents are privileged software, deployed across thousands of endpoints, updated continuously and rarely audited by the customer — they accumulate exactly the properties that attract researchers and attackers alike. That a single researcher keeps finding bypasses across several major vendors points less to a lone genius than to a structural review deficit on these components.

What to put in place

Four actions, in descending priority:

  • Check your Malware Protection Engine version. The fixed version is 1.1.26080.3. But note the catch: ShieldCrash bypasses exactly that version — so having 1.1.26080.3 does not, by itself, mean the endpoint is protected. Record the deployed version so you can compare it against the next engine update.
  • Watch for a new fix. A confirmed bypass usually triggers a new Microsoft patch within days. Add this CVE to your watch list and treat the next engine version as a priority rollout.
  • Treat Defender as a monitored component. Put the security agent on the sensitive-software inventory, right alongside a DNS server or a domain controller. An endpoint “protected by the EDR” does not excuse you from monitoring the EDR.
  • Do not disable Defender to remove the flaw. The bypass does not affect systems where Defender is disabled, but turning off antivirus to escape a file read is like disabling the fire alarm because its wiring is faulty. If you must compensate, add detection controls on suspicious SAM and DPAPI reads.

Add a check that compares the engine version deployed across the estate against the latest version published by Microsoft. The worst configuration is not the unprotected endpoint you know about; it is the one whose EDR you believe is current when it no longer is.

Verdict

If you run a Windows estate with Microsoft Defender, treat ShieldCrash as an immediate watch item, not a mass-patch emergency: it is a research PoC, not confirmed in-the-wild exploitation, but it proves the patch in place is incomplete. Actively monitor for the next Malware Protection Engine update and be ready to roll it out the day it lands. If your team runs a bug-bounty or EDR watch program, this is the moment to raise its priority: Chaotic Eclipse’s PoC series shows security vendors respond piecemeal, and the customer who keeps an inventory of their agents remains the last coherent line of defense.

References

cve

Linked vulnerabilities

The cyber brief, every Tuesday

The flaws that matter and the patches to apply, in a ten-minute read.

No spam. One-click unsubscribe.
read next

On the same topic

A Lenovo email-verification flaw opened 5,000 Dropbox accounts without a password

On September 2, 2026, Dropbox disclosed that an attacker accessed roughly 5,000 accounts by abusing a flaw in Lenovo’s email-verification process to register fraudulent Lenovo IDs — never needing the victim’s Dropbox password. Audit every identity-federation link you accept and require re-authentication on SSO sign-ins.

← Back to the feed

Type at least two characters.

navigate open esc dismiss