Close Menu
NCIJ Network NCIJ Network
    What's Hot

    ‘Polarised Brazil’: Lula remains a ‘strong candidate’ despite the challenges of incumbency – Spotlight

    September 7, 2026

    Farage still Reform’s best hope as rivals struggle to match appeal to party faithful | Reform UK

    September 7, 2026

    Huawei copies Samsung’s privacy display in its latest trifold

    September 7, 2026
    Facebook X (Twitter) Instagram
    Trending
    • ‘Polarised Brazil’: Lula remains a ‘strong candidate’ despite the challenges of incumbency – Spotlight
    • Farage still Reform’s best hope as rivals struggle to match appeal to party faithful | Reform UK
    • Huawei copies Samsung’s privacy display in its latest trifold
    • OpenBMB Releases MiniCPM5-2B: A 2.52B Dense Model Averaging 53.9 Across 34 Benchmarks and Built to Run On Device
    • Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits
    • Joe Biden’s Son to Launch Memecoin, Will Send to TRUMP Holders: WSJ
    • Bovine TB: Gaps in evidence about impact of vaccinating badgers
    • German chancellor vows to stay in office despite AfD triumph in state election | Germany
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Monday, September 7
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKSeptember 7, 2026 Cybersecurity No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The security researcher known as Nightmare Eclipse has dropped three zero-day exploits targeting products from Avast, CrowdStrike, and Nvidia.

    Also known as Chaotic Eclipse, Infinite Nightmare, and MSNightmare, the security researcher came to fame for a series of zero-day exploits targeting Microsoft’s products, but has recently moved to other vendors as well.

    In late August, Nightmare Eclipse released a privilege escalation zero-day in a Kaspersky endpoint security product. Dubbed HardBreacher, the exploit has been patched by Kaspersky on August 31.

    Within a short window last week, Nightmare Eclipse dropped three new zero-day exploits, dubbed PrettyPrague, FalconFlank, and GreenSection.

    The PrettyPrague proof-of-concept (PoC) code, the researcher says, targets the Avast sandbox to spawn a shell with full system privileges, and may also affect other GenDigital products, including AVG and Norton.

    “Gen was recently made aware of a security vulnerability affecting a subset of Gen products, including Avast Antivirus, that could allow an attacker to elevate their system privileges. We immediately initiated our security response procedures and have fixed the issue. We take all security matters seriously and encourage users to keep their products up to date to ensure they are protected,” a GenDigital spokesperson said, responding to a SecurityWeek inquiry.

    Advertisement. Scroll to continue reading.

    FalconFlank exploits a bug in the Office malicious macros remediation feature of CrowdStrike Falcon Sensor for privilege escalation, the researcher says.

    “We are actively investigating these claims and advise customers to disable the Microsoft Office File Suspicious Macro Removal Windows policy setting. Customers remain protected through the Cloud Anti-malware for Microsoft Office Files settings. We refer customers to the FalconFlank Tech Alert in the CrowdStrike support portal,” CrowdStrike told SecurityWeek.

    The GreenSection exploit, Nightmare Eclipse says, targets an out-of-bounds memory write affecting a shared global memory section used by multiple Nvidia user-mode components.

    “While this bug does not get SYSTEM privileges immediately, it can be used cross user to user boundary easily or even compromise the dwm.exe process. I didn’t look deeply into it, but I’d be happy to see someone making a full exploit out of it,” Nightmare Eclipse notes.

    “We are aware of reports describing a proof-of-concept that demonstrates improper access controls on a shared memory section used by certain NVIDIA GPU display driver components on Windows. NVIDIA is reviewing the reported behavior through our established security and product engineering processes. NVIDIA takes reports of this nature seriously and is actively investigating to determine the root cause, affected configurations, and appropriate remediation,” an Nvidia spokesperson said.

    Security researcher Kevin Beaumont said late last week that the Avast, CrowdStrike, and Kaspersky exploits work.

    *updated with statement from Nvidia

    Related: VMware Workstation and Fusion Updates Patch Critical Vulnerability

    Related: Google Patches 6th Chrome Zero-Day of 2026

    Related: Over 3 Million WordPress Sites Affected by Migration Plugin Vulnerability

    Related: Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities

    Avast CrowdStrike drops Eclipse exploits nightmare Nvidia ZeroDay
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Magento StyleSmuggler zero-day exploited to deploy Linux backdoor

    Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

    BigBear Microsoft 365 phishing service bypassed MFA at 258 organizations

    Mathspace discloses data breach affecting over 1 million people

    Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

    Your Cloud Security Checklist Doesn’t Work the Way You Think It Does

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    ‘Polarised Brazil’: Lula remains a ‘strong candidate’ despite the challenges of incumbency – Spotlight

    September 7, 2026

    Farage still Reform’s best hope as rivals struggle to match appeal to party faithful | Reform UK

    September 7, 2026

    Huawei copies Samsung’s privacy display in its latest trifold

    September 7, 2026

    OpenBMB Releases MiniCPM5-2B: A 2.52B Dense Model Averaging 53.9 Across 34 Benchmarks and Built to Run On Device

    September 7, 2026
    Latest Posts

    Book Review: ‘Pure Men’ by Mohamed Mbougar Sarr

    August 1, 2026

    Bitcoin ETFs Post First Monthly Inflow Since April

    August 1, 2026

    Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction

    August 1, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    ‘Polarised Brazil’: Lula remains a ‘strong candidate’ despite the challenges of incumbency – Spotlight

    September 7, 2026

    Farage still Reform’s best hope as rivals struggle to match appeal to party faithful | Reform UK

    September 7, 2026

    Huawei copies Samsung’s privacy display in its latest trifold

    September 7, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.