New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defender

2026-09-10T07:23:58Z360b4615f873110351fafe24f1b65b3f5cf7c64ce47652cc16860fe249ad3c84
CVE-2025-25249AI securityAndroidFortinetICSMicrosoft DefenderPivotC2SYSTEM privilegesWindowsactive exploitationindustrial control systemsprivilege escalationremote access trojanzero-day

What happened

SecurityWeek reports an alleged ShieldCrash zero-day targeting Microsoft Defender with claims of SYSTEM-level privileges on fully patched Windows systems, as well as active exploitation of Fortinet CVE-2025-25249 in PivotC2 RAT attacks. Additional coverage includes critical Fortinet, Android, chipmaker, and industrial-control-system vulnerabilities, plus broader reporting on AI-enabled threat activity and AI model capability theft.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
360b4615f873110351fafe24f1b65b3f5cf7c64ce47652cc16860fe249ad3c84
Enrichment time
2026-09-10T07:23:58Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.