PANews reported on October 13th that a post forwarded by 23pds, Chief Information Security Officer of SlowMist Technology, revealed a vulnerability in Microsoft Defender that could allow attackers to bypass authentication and upload malicious files. Serious vulnerabilities were discovered in the network communication between Microsoft Defender for Endpoint (DFE) and its cloud services. These vulnerabilities allow attackers who have compromised the system to bypass authentication, forge data, leak sensitive information, and even upload malicious files into investigation packages.PANews reported on October 13th that a post forwarded by 23pds, Chief Information Security Officer of SlowMist Technology, revealed a vulnerability in Microsoft Defender that could allow attackers to bypass authentication and upload malicious files. Serious vulnerabilities were discovered in the network communication between Microsoft Defender for Endpoint (DFE) and its cloud services. These vulnerabilities allow attackers who have compromised the system to bypass authentication, forge data, leak sensitive information, and even upload malicious files into investigation packages.

Microsoft Defender has a file that can bypass authentication and upload malicious files

2025/10/13 08:31

PANews reported on October 13th that a post forwarded by 23pds, Chief Information Security Officer of SlowMist Technology, revealed a vulnerability in Microsoft Defender that could allow attackers to bypass authentication and upload malicious files. Serious vulnerabilities were discovered in the network communication between Microsoft Defender for Endpoint (DFE) and its cloud services. These vulnerabilities allow attackers who have compromised the system to bypass authentication, forge data, leak sensitive information, and even upload malicious files into investigation packages.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.
Share Insights