Forbes contributors publish independent expert analyses and insights.
Davey Winder is a veteran cybersecurity writer, hacker and analyst.This voice experience is generated by AI. Learn more.
This voice experience is generated by AI. Learn more.

Hacker drops new Microsoft Windows zero-day exploit.
NurPhoto via Getty Images
Updated April 8: In light of the news that a dissatisfied, to say the least, security researcher has publicly released a Microsoft Windows zero-day exploit called BlueHammer, this article has been updated with additional technical details about the exploit as well as comments from security industry experts.
Usually, when I report zero-day exploits, it’s because attacks by threat actors are already underway or a vendor has released a patch after becoming aware of the vulnerability. BlueHammer, however, is different. This time, it’s a security researcher who has released the Windows attack exploit code; there is no patch available, and the researcher is laying the blame firmly at the door of the Microsoft Security Response Center. Here’s what we know and what Microsoft has said about the security alert that a billion Windows users are waking up to.
ForbesMicrosoft Confirms New And Widespread 2FA Code Attacks Ongoing
LOADING VIDEO PLAYER...
FORBES’ FEATURED Video
























