{"id":7167,"date":"2018-09-24T00:55:00","date_gmt":"2018-09-23T22:55:00","guid":{"rendered":"http:\/\/159.69.82.204\/win\/?p=7167"},"modified":"2023-07-19T17:09:45","modified_gmt":"2023-07-19T15:09:45","slug":"windows-alpc-vulnerability-cve-2018-8440-used-in-exploit-kit","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2018\/09\/24\/windows-alpc-vulnerability-cve-2018-8440-used-in-exploit-kit\/","title":{"rendered":"Windows ALPC vulnerability (CVE-2018-8440) used in Exploit Kit"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline\" src=\"https:\/\/www.borncity.com\/blog\/wp-content\/uploads\/2015\/01\/Schutz.jpg\" width=\"40\" align=\"left\" height=\"47\">The ALPC vulnerability (CVE-2018-8440), which is present in all supported and unpatched Microsoft Windows versions, is now being exploited by the Metasploit Kit. <\/p>\n<p><!--more--><\/p>\n<p>I had blogged several times about the ALPC vulnerability (CVE-2018-8440) (see links at the end of this article). Microsoft released corresponding fixes on September 11, 2018 (see Microsoft Security Update Summary September 11, 2018). So if you have patched, you are on the safe side. If you haven't installed the updates, you should know that cyber criminals can now exploit this vulnerability via the Metasploit kit, as the following tweet reports.<\/p>\n<blockquote class=\"twitter-tweet\" data-lang=\"de\">\n<p lang=\"en\" dir=\"ltr\">Upcoming Microsoft Windows ALPC Task Scheduler Local Privilege Elevation (CVE-2018-8440) exploit in <a href=\"https:\/\/twitter.com\/hashtag\/Metasploit?src=hash&amp;ref_src=twsrc%5Etfw\">#Metasploit<\/a> !<br \/>Yes the 0day (now patched) found and disclosed by @SandboxEscaper <br \/>Thx <a href=\"https:\/\/twitter.com\/tychos_moose?ref_src=twsrc%5Etfw\">@tychos_moose<\/a> Aaron Soto <a href=\"https:\/\/twitter.com\/shellfail?ref_src=twsrc%5Etfw\">@shellfail<\/a> and <a href=\"https:\/\/twitter.com\/TheColonial?ref_src=twsrc%5Etfw\">@TheColonial<\/a> for the hard work. <a href=\"https:\/\/t.co\/M4wLWBt0hW\">https:\/\/t.co\/M4wLWBt0hW<\/a> <a href=\"https:\/\/t.co\/GRvK4StntR\">pic.twitter.com\/GRvK4StntR<\/a><\/p>\n<p>\u2014 Davy Douhine (@ddouhine) <a href=\"https:\/\/twitter.com\/ddouhine\/status\/1042778539593007105?ref_src=twsrc%5Etfw\">20. September 2018<\/a><\/p><\/blockquote>\n<p><span id=\"preserve3a4a20cdf2ac4a8ca032db08c7bce6e0\" class=\"wlWriterPreserve\"><SCRIPT charset=\"utf-8\" src=\"https:\/\/platform.twitter.com\/widgets.js\" async><\/SCRIPT><\/span>  <\/p>\n<p><strong>Simlar articles:<br \/><\/strong>Microsoft Security Update Summary September 11, 2018<br \/><a href=\"https:\/\/borncity.com\/win\/2018\/08\/28\/windows-0-day-alpc-vulnerability-in-task-scheduler\/\">Windows 0-day ALPC vulnerability in task scheduler<\/a><br \/>Microsoft Patchday: Other Updates September 11, 2018<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The ALPC vulnerability (CVE-2018-8440), which is present in all supported and unpatched Microsoft Windows versions, is now being exploited by the Metasploit Kit.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[580,22,2],"tags":[69,195,194],"class_list":["post-7167","post","type-post","status-publish","format-standard","hentry","category-security","category-update","category-windows","tag-security","tag-update","tag-windows"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/7167","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=7167"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/7167\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=7167"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=7167"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=7167"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}