MiniPlasma PoC Prompts SYSTEM Privilege Escalation on Windows

TL;DR Summary
Security researcher Chaotic Eclipse released a MiniPlasma PoC that can grant SYSTEM privileges on patched Windows by abusing cldflt.sys (Cloud Files Mini Filter Driver); the flaw traces to CVE-2020-17103 and may be unpatched on many systems, suggesting broad impact across Windows versions. The PoC exploits a race condition and has shown reliability on Windows 11 May 2026 builds, though results vary by build (Insider Canary sometimes unaffected). Microsoft had addressed a related issue in 2025 (CVE-2025-62221).
- MiniPlasma Windows 0-Day Enables SYSTEM Privilege Escalation on Fully Patched Systems The Hacker News
- Microsoft Windows Alert—Angry Hacker Drops 2 New Zero-Day Exploits Forbes
- A new Windows 11 BitLocker bypass only needs a USB stick, and the researcher thinks it's a backdoor XDA
- New Windows 'MiniPlasma' zero-day exploit gives SYSTEM access, PoC released BleepingComputer
- Windows 11 KB5089549 can be planted with deadly Registry hack to take over your system Neowin
Reading Insights
Total Reads
0
Unique Readers
11
Time Saved
1 min
vs 2 min read
Condensed
74%
289 → 76 words
Want the full story? Read the original article
Read on The Hacker News