Close Menu

    Subscribe to Updates

    Get the latest Tech news from SynapseFlow

    What's Hot

    Researcher Drops MiniPlasma Windows Exploit for Unpatched 2020 CVE

    May 19, 2026

    The Fully Anesthetized Brain Can Still Track a Podcast

    May 19, 2026

    AndaSeat Phantom 4 Pro review: adaptive lumbar support comes at a cost

    May 19, 2026
    Facebook X (Twitter) Instagram
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    Facebook X (Twitter) Instagram YouTube
    synapseflow.co.uksynapseflow.co.uk
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    synapseflow.co.uksynapseflow.co.uk
    Home»Tech Gadgets»‘The exact same issue that was reported to Microsoft by Google project zero is actually still present, unpatched’: Chaotic Eclipse strikes again with another worrying Windows security flaw
    ‘The exact same issue that was reported to Microsoft by Google project zero is actually still present, unpatched’: Chaotic Eclipse strikes again with another worrying Windows security flaw
    Tech Gadgets

    ‘The exact same issue that was reported to Microsoft by Google project zero is actually still present, unpatched’: Chaotic Eclipse strikes again with another worrying Windows security flaw

    The Tech GuyBy The Tech GuyMay 18, 2026No Comments3 Mins Read0 Views
    Share
    Facebook Twitter LinkedIn Pinterest Email
    Advertisement



    • Researcher Chaotic Eclipse discloses new Windows 11 zero‑day affecting the Cloud Filter driver
    • MiniPlasma, originally tracked as CVE‑2020‑17103, was reported years ago but remains exploitable despite prior patch attempts
    • It is the sixth vulnerability leaked by the researcher, highlighting ongoing disputes with Microsoft’s handling of bug reports

    Threat actors could escalate privileges and gain SYSTEM access on a fully patched Windows 11 device thanks to an unpatched vulnerability which allegedly should have been fixed years ago, new reports have claimed.

    Advertisement

    A researcher with the alias Chaotic Eclipse recently disclosed a Proof-of-Concept (PoC) exploit for a zero-day vulnerability they named “MiniPlasma”. In a new GitHub entry, the researcher said the bug impacts the ‘cldflt.sys’ Cloud Filter driver and its ‘HsmOsBlockPlaceholderAccess’ routine.

    They said Google’s Project Zero reported the issue to Microsoft back in December 2020, who even patched it at some point in the meantime. However, for reasons unknown, the vulnerability can now be exploited. They speculate that the patch was either poorly done, or rolled back.

    Latest Videos From

    You may like

    Chaotic Eclipse

    “After investigating, it turns out the exact same issue that was reported to Microsoft by Google project zero is actually still present, unpatched,” Chaotic Eclipse said. “I’m unsure if Microsoft just never patched the issue or the patch was silently rolled back at some point for unknown reasons. The original PoC by Google worked without any changes.”

    The vulnerability, tracked as CVE-2020-17103, was tested by researchers at BleepingComputer, as well as by independent researcher Will Dormann, of Tharros, and both have confirmed that it works. Dormann did stress that the bug doesn’t work in the latest Windows 11 Insider Preview Canary build.

    For weeks now, Chaotic Eclipse has been steadily disclosing different vulnerabilities affecting fully patched Windows 11 machines. Apparently, they are unsatisfied with how Microsoft handles bug reports. So far, they’ve leaked five vulnerabilities, called RedSun, UnDefend, BlueHammer, YellowKey and GreenPlasma. RedSun was allegedly patched quietly in the meantime.

    With MiniPlasma, the total number is now six, and it’s safe to assume there will be more.

    Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    “Normally, I would go through the process of begging them to fix a bug but to summarize, I was told personally by them that they will ruin my life and they did and I’m not sure if I was the only who had this horride experience or few people did but I think most would just eat it and cut their losses but for me, they took away everything,” the researcher said.

    “They mopped the floor with me and pulled every childish game they could. It was soo bad at some point I was wondering if I was dealing with a massive corporation or someone who is just having fun seeing me suffer but it seems to be a collective decision.”


    Best antivirus software header

    The best antivirus for all budgets

    Our top picks, based on real-world testing and comparisons

    Google logo on a black background next to text reading 'Click to follow TechRadar'

    Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.


    Advertisement
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    The Tech Guy
    • Website

    Related Posts

    Is Bluesky down for you? Here’s what’s going on (Update)

    May 19, 2026

    This is how long your iPhone will really last

    May 18, 2026

    Xiaomi 17T series gets an official launch date

    May 18, 2026

    Google’s offline AI app changed how I see on-device AI

    May 18, 2026

    4 reasons why you should probably buy an older iPad

    May 17, 2026

    Minisforum SSD-only NAS systems promise silent storage performance while raising questions about cost, security, and real-world usability limits

    May 17, 2026
    Leave A Reply Cancel Reply

    Advertisement
    Top Posts

    The iPad Air brand makes no sense – it needs a rethink

    October 12, 202516 Views

    ChatGPT Group Chats are here … but not for everyone (yet)

    November 14, 20258 Views

    Facebook updates its algorithm to give users more control over which videos they see

    October 8, 20258 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Advertisement
    About Us
    About Us

    SynapseFlow brings you the latest updates in Technology, AI, and Gadgets from innovations and reviews to future trends. Stay smart, stay updated with the tech world every day!

    Our Picks

    Researcher Drops MiniPlasma Windows Exploit for Unpatched 2020 CVE

    May 19, 2026

    The Fully Anesthetized Brain Can Still Track a Podcast

    May 19, 2026

    AndaSeat Phantom 4 Pro review: adaptive lumbar support comes at a cost

    May 19, 2026
    categories
    • AI News & Updates
    • Cybersecurity
    • Future Tech
    • Reviews
    • Software & Apps
    • Tech Gadgets
    Facebook X (Twitter) Instagram Pinterest YouTube Dribbble
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    © 2026 SynapseFlow All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.