{"id":167926,"date":"2026-04-08T11:12:52","date_gmt":"2026-04-08T09:12:55","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/issledovatel-slil-v-set-kod-eksplojta-dlya-windows-v-otvet-na-bezdejstvie-microsoft"},"modified":"2026-04-10T10:23:05","modified_gmt":"2026-04-10T08:23:05","slug":"issledovatel-slil-v-set-kod-eksplojta-dlya-windows-v-otvet-na-bezdejstvie-microsoft","status":"publish","type":"post","link":"https:\/\/prohoster.info\/ro\/blog\/news\/issledovatel-slil-v-set-kod-eksplojta-dlya-windows-v-otvet-na-bezdejstvie-microsoft","title":{"rendered":"Un cercet\u0103tor a publicat online codul de exploatare pentru Windows ca r\u0103spuns la inactivitatea Microsoft","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Un cercet\u0103tor \u00een securitate a postat online un cod de exploatare zero-day pentru Windows, cunoscut sub numele de BlueHammer. Motiva\u021bia acestui gest radical a fost un conflict cu Centrul de r\u0103spuns Microsoft (MSRC) privind gestionarea informa\u021biilor furnizate de el.<\/p>\n<p><img decoding=\"async\" style=\"display: block; margin: 0 auto;\" src=\"\/wp-content\/uploads\/2026\/04\/2826548d95da54dac5df557db876e290.jpg\" alt=\"Un cercet\u0103tor a publicat online codul de exploatare pentru Windows ca r\u0103spuns la inactivitatea Microsoft\" \/><\/p>\n<p>Cercet\u0103torul care se prezint\u0103 sub pseudonimul Chaotic Eclipse a publicat codul de exploatare pe platforma GitHub pe 3 aprilie. Autorul \u0219i-a exprimat dezam\u0103girea fa\u021b\u0103 de atitudinea conducerii MSRC fa\u021b\u0103 de informa\u021biile anterioare despre incident \u0219i a refuzat \u00een mod principial s\u0103 explice detaliile tehnice ale metodei sale de divulgare a vulnerabilit\u0103\u021bii. Exploitul permite unui atacator local s\u0103 \u00ee\u0219i creasc\u0103 privilegiile \u00een sistem la nivel de SYSTEM sau s\u0103 ob\u021bin\u0103 drepturi extinse de administrator. P\u00e2n\u0103 acum, Microsoft nu a lansat o actualizare de securitate, oferind doar un comentariu standard despre importan\u021ba divulg\u0103rii coordonate a vulnerabilit\u0103\u021bilor.<\/p>\n<p>Will Dormann, analistul principal de securitate al companiei Tharros, a confirmat func\u021bionarea exploatului. El a explicat c\u0103 atacul reprezint\u0103 o cre\u0219tere local\u0103 a privilegiilor, care combin\u0103 vulnerabilitatea de verificare a timpului cu utilizarea acestuia (Time-of-Check to Time-of-Use, TOCTOU) \u0219i confuzia c\u0103ilor. Aceast\u0103 metod\u0103 complex\u0103 ofer\u0103 hackerului acces la baza de date Security Account Manager (SAM), unde sunt stocate hash-urile parolelor conturilor locale. Ca urmare, este posibil s\u0103 se lanseze o linie de comand\u0103 cu cele mai mari privilegii \u0219i s\u0103 se compromit\u0103 complet computerul.<\/p>\n<p>At\u00e2t autorul codului, Chaotic Eclipse, c\u00e2t \u0219i testerii externi noteaz\u0103 existen\u021ba de buguri \u00een exploit, ceea ce face ca acesta s\u0103 func\u021bioneze instabil. \u00cen special, pe platforma Windows Server, codul nu ofer\u0103 drepturi complete de sistem, ci doar le cre\u0219te la nivel de administrator cu o solicitare de confirmare. Dormann a sugerat c\u0103 iritarea autorului ar fi putut fi provocat\u0103 de cerin\u021ba Microsoft de a ata\u0219a obligatoriu un videoclip cu demonstrarea atacului.<\/p>\n<p>De\u0219i vulnerabilitatea necesit\u0103 acces local ini\u021bial, hackerii pot ob\u021bine acest lucru cu u\u0219urin\u021b\u0103 \u00een avans prin inginerie social\u0103 sau alte bre\u0219e \u00een software.<\/p>\n<p><strong>Sursa:<\/strong><\/p>\n<ul class=\"related\">\n<li><a title=\"BleepingComputer\" href=\"https:\/\/www.bleepingcomputer.com\/\" target=\"_blank\" rel=\"nofollow noopener\">BleepingComputer<\/a><\/li>\n<\/ul>\n<p><center><center><\/center><center><\/center><\/center><center><\/center><br \/>\nSursa: <a rel=\"nofollow\" href=\"https:\/\/3dnews.ru\/1139601\">3dnews.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u044c \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0432\u044b\u043b\u043e\u0436\u0438\u043b \u0432 \u0441\u0435\u0442\u044c \u043a\u043e\u0434 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u0430 \u043d\u0443\u043b\u0435\u0432\u043e\u0433\u043e \u0434\u043d\u044f \u0434\u043b\u044f Windows, \u043f\u043e\u043b\u0443\u0447\u0438\u0432\u0448\u0435\u0433\u043e \u043d\u0430\u0437\u0432\u0430\u043d\u0438\u0435 BlueHammer. \u041f\u0440\u0438\u0447\u0438\u043d\u043e\u0439 \u0442\u0430\u043a\u043e\u0433\u043e \u0440\u0430\u0434\u0438\u043a\u0430\u043b\u044c\u043d\u043e\u0433\u043e \u0448\u0430\u0433\u0430 \u0441\u0442\u0430\u043b \u043a\u043e\u043d\u0444\u043b\u0438\u043a\u0442 \u0441\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0441\u0442\u0430 \u0441 \u0426\u0435\u043d\u0442\u0440\u043e\u043c \u0440\u0435\u0430\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u044f Microsoft (MSRC) \u0438\u0437-\u0437\u0430 \u043e\u0431\u0440\u0430\u0431\u043e\u0442\u043a\u0438 \u043f\u0440\u043e\u0446\u0435\u0441\u0441\u0430 \u043f\u0440\u0435\u0434\u043e\u0441\u0442\u0430\u0432\u043b\u0435\u043d\u043d\u043e\u0439 \u0438\u043c \u0438\u043d\u0444\u043e\u0440\u043c\u0430\u0446\u0438\u0438. \u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u044c, \u0432\u044b\u0441\u0442\u0443\u043f\u0430\u044e\u0449\u0438\u0439 \u043f\u043e\u0434 \u043f\u0441\u0435\u0432\u0434\u043e\u043d\u0438\u043c\u043e\u043c Chaotic Eclipse, 3 \u0430\u043f\u0440\u0435\u043b\u044f \u0432\u044b\u043b\u043e\u0436\u0438\u043b \u043a\u043e\u0434 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u0430 \u043d\u0430 \u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c\u0435 GitHub. \u0410\u0432\u0442\u043e\u0440 \u0432\u044b\u0440\u0430\u0437\u0438\u043b \u0440\u0430\u0437\u043e\u0447\u0430\u0440\u043e\u0432\u0430\u043d\u0438\u0435 \u043e\u0442\u043d\u043e\u0448\u0435\u043d\u0438\u0435\u043c \u0440\u0443\u043a\u043e\u0432\u043e\u0434\u0441\u0442\u0432\u0430 MSRC \u043a \u043f\u0440\u0435\u0434\u043e\u0441\u0442\u0430\u0432\u043b\u0435\u043d\u043d\u043e\u0439 \u0438\u043c [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":8,"featured_media":167927,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-167926","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u044c \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0432\u044b\u043b\u043e\u0436\u0438\u043b \u0432 \u0441\u0435\u0442\u044c \u043a\u043e\u0434 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u0430 \u043d\u0443\u043b\u0435\u0432\u043e\u0433\u043e \u0434\u043d\u044f \u0434\u043b\u044f Windows, \u043f\u043e\u043b\u0443\u0447\u0438\u0432\u0448\u0435\u0433\u043e \u043d\u0430\u0437\u0432\u0430\u043d\u0438\u0435 BlueHammer.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Erik Peterson\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/ro\/blog\/news\/issledovatel-slil-v-set-kod-eksplojta-dlya-windows-v-otvet-na-bezdejstvie-microsoft\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"ro_RO\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u044c \u0441\u043b\u0438\u043b \u0432 \u0441\u0435\u0442\u044c \u043a\u043e\u0434 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u0430 \u0434\u043b\u044f Windows \u0432 \u043e\u0442\u0432\u0435\u0442 \u043d\u0430 \u0431\u0435\u0437\u0434\u0435\u0439\u0441\u0442\u0432\u0438\u0435 Microsoft | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u044c \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0432\u044b\u043b\u043e\u0436\u0438\u043b \u0432 \u0441\u0435\u0442\u044c \u043a\u043e\u0434 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u0430 \u043d\u0443\u043b\u0435\u0432\u043e\u0433\u043e \u0434\u043d\u044f \u0434\u043b\u044f Windows, \u043f\u043e\u043b\u0443\u0447\u0438\u0432\u0448\u0435\u0433\u043e \u043d\u0430\u0437\u0432\u0430\u043d\u0438\u0435 BlueHammer.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/ro\/blog\/news\/issledovatel-slil-v-set-kod-eksplojta-dlya-windows-v-otvet-na-bezdejstvie-microsoft\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-04-08T09:12:55+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-04-10T08:23:05+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Cercet\u0103torul a publicat online codul exploitului pentru Windows ca r\u0103spuns la inactivitatea Microsoft | ProHoster","description":"Un cercet\u0103tor \u00een securitate a publicat online codul unui exploit de tip zero-day pentru Windows, numit BlueHammer.","canonical_url":"https:\/\/prohoster.info\/ro\/blog\/news\/issledovatel-slil-v-set-kod-eksplojta-dlya-windows-v-otvet-na-bezdejstvie-microsoft","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"ro_RO","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u044c \u0441\u043b\u0438\u043b \u0432 \u0441\u0435\u0442\u044c \u043a\u043e\u0434 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u0430 \u0434\u043b\u044f Windows \u0432 \u043e\u0442\u0432\u0435\u0442 \u043d\u0430 \u0431\u0435\u0437\u0434\u0435\u0439\u0441\u0442\u0432\u0438\u0435 Microsoft | ProHoster","og:description":"\u0418\u0441\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u0442\u0435\u043b\u044c \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0432\u044b\u043b\u043e\u0436\u0438\u043b \u0432 \u0441\u0435\u0442\u044c \u043a\u043e\u0434 \u044d\u043a\u0441\u043f\u043b\u043e\u0439\u0442\u0430 \u043d\u0443\u043b\u0435\u0432\u043e\u0433\u043e \u0434\u043d\u044f \u0434\u043b\u044f Windows, \u043f\u043e\u043b\u0443\u0447\u0438\u0432\u0448\u0435\u0433\u043e \u043d\u0430\u0437\u0432\u0430\u043d\u0438\u0435 BlueHammer.","og:url":"https:\/\/prohoster.info\/ro\/blog\/news\/issledovatel-slil-v-set-kod-eksplojta-dlya-windows-v-otvet-na-bezdejstvie-microsoft","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2026-04-08T09:12:55+00:00","article:modified_time":"2026-04-10T08:23:05+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":[],"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/posts\/167926","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/comments?post=167926"}],"version-history":[{"count":1,"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/posts\/167926\/revisions"}],"predecessor-version":[{"id":168278,"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/posts\/167926\/revisions\/168278"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/media\/167927"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/media?parent=167926"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/categories?post=167926"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/ro\/wp-json\/wp\/v2\/tags?post=167926"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}