CyberHappenings logo
☰

Track cybersecurity events as they unfold. Sourced timelines, daily updates. Fast, privacy‑respecting. No ads, no tracking.

Elastic denies zero-day RCE flaw in Defend EDR

First reported
Last updated
πŸ“° 1 unique sources, 1 articles

Summary

Hide β–²

Elastic has rejected claims of a zero-day remote code execution (RCE) vulnerability in its Defend endpoint detection and response (EDR) product. The company investigated allegations made by AshES Cybersecurity, which claimed to have discovered an RCE flaw in Elastic Defend. Elastic found no evidence supporting the claims. AshES Cybersecurity published a blog post detailing the alleged vulnerability and provided videos demonstrating the supposed exploit. Elastic stated that the reports lacked evidence of reproducible exploits and that AshES Cybersecurity did not follow coordinated disclosure principles.

Timeline

  1. 19.08.2025 19:41 πŸ“° 1 articles Β· ⏱ 28d ago

    Elastic denies zero-day RCE flaw in Defend EDR

    Elastic rejected claims of a zero-day RCE vulnerability in its Defend EDR product. AshES Cybersecurity alleged a flaw in the 'elastic-endpoint-driver.sys' kernel driver, but Elastic's investigation found no evidence supporting the claims. AshES Cybersecurity did not provide a proof-of-concept exploit or follow coordinated disclosure principles.

    Show sources

Information Snippets