Steam Windows 0-Day Vulnerability Allows Users to Silently Escalate to Full SYSTEM Privileges

A newly disclosed Windows zero-day affecting the Steam Client Service can reportedly let a standard local user obtain NT AUTHORITY\SYSTEM privileges without administrator credentials, a User Account Control prompt, Steam authentication, or launching a game. Researcher KillaBoi published the BrokenPipe proof of concept on September 14, describing local privilege escalation through steamservice.exe, Steam’s privileged Windows […]

This article has been indexed from Cyber Security News

Read the original article: