Windows MiniPlasma Zero-Day Returns a 2020 Bug as a SYSTEM Exploit
A working proof-of-concept exploit that hands attackers SYSTEM-level privileges on fully patched Windows 11 has been live on GitHub since May 13. Within five days the repository pulled in more than 440 stars, and an independent vulnerability analyst confirmed the code spawns a SYSTEM shell on machines running the May 2026 cumulative update. The strange part: the underlying flaw was supposed to have been fixed in December 2020. The Cloud Filter driver bug Microsoft assigned CVE-2020-17103 (Common Vulnerabilities and Exposures, the public identifier registry for security flaws) is the same flaw the new exploit, named MiniPlasma, weaponizes today, raising the…
