legal action

Winsage
June 12, 2026
Nightmare-Eclipse, also known as Chaotic-Eclipse, has introduced two new exploits: RoguePlanet and GreatXML. RoguePlanet exploits a vulnerability in Windows Defender, allowing attackers to gain SYSTEM user access privileges by tricking a user into executing a script. This access enables attackers to execute commands beyond standard Administrator capabilities, siphon sensitive data, and install malware. GreatXML provides a method for bypassing BitLocker encryption by creating a specially crafted "unattend.xml" file and a "Recovery" directory on the Windows recovery partition. Microsoft has shifted its stance from threatening legal action against Eclipse and is now monitoring the situation, while Eclipse has postponed a planned mass disclosure of zero-day Windows vulnerabilities initially set for July 14 due to delays in developing RoguePlanet.
Winsage
June 1, 2026
Microsoft is facing scrutiny due to a critical remote execution vulnerability, CVE-2026-41089, rated at 9.8, affecting Windows Server domain controllers from version 2012 onward. This vulnerability allows unauthenticated users on the same network to send malformed UDP packets to a domain controller, potentially granting unauthorized system access or causing a reboot, leading to denial-of-service scenarios. The vulnerable service is Netlogon, and there are no immediate mitigations available; patches will be released on May 12. The vulnerability could allow attackers to create multiple accounts with various access levels, compromising the security of entire networks. Cybersecurity experts recommend patching all linked domain controllers simultaneously. The vulnerability is caused by a buffer overflow in the Netlogon service due to a field in a network packet exceeding its expected size. A GitHub repository exists with proof-of-concept code that can crash the LSASS service. Additionally, Microsoft is in conflict with security researcher Chaotic Eclipse, who has published zero-day exploits following a breakdown in negotiations.
AppWizard
May 28, 2026
Rockstar Games terminated 31 employees in October 2025, with the dismissed workers claiming their firings were due to their efforts to unionize, a claim Rockstar denies, stating the terminations were due to the disclosure of unannounced game features. A new union, affiliated with the Independent Workers' Union of Great Britain (IWGB), has formed among Rockstar employees to advocate for the rights of the terminated workers and has initiated legal action against the company. The union is focusing on issues such as pay transparency, flexible working conditions, and an end to "crunch" culture. The IWGB is also raising funds for its legal case and aims to secure justice for the fired workers. Meanwhile, Take-Two Interactive has projected revenues exceeding billion for the 2027 fiscal year, largely due to the upcoming release of Grand Theft Auto 6.
Winsage
May 22, 2026
Microsoft's Digital Crimes Unit has filed a lawsuit against Fox Tempest, a criminal enterprise selling fraudulently signed malware to ransomware groups, affecting hospitals, schools, and critical infrastructure in ten countries. The lawsuit was filed on May 19 in the U.S. District Court for the Southern District of New York. Fox Tempest created a portal at signspace[.]cloud, offering a user-friendly interface for uploading malicious files and generating over 580 fraudulent Microsoft accounts to bypass identity verification. The group provided pre-configured virtual machines for customers to upload malicious payloads in exchange for signed binaries. Fox Tempest's operations were linked to a ransomware attack chain involving a counterfeit Microsoft Teams installer that deployed the Rhysida ransomware. This ransomware strain has caused significant breaches, including an October 2023 attack on the British Library, which resulted in a data exfiltration of about 600GB and recovery costs of £6 to £7 million, and a September 2024 attack on Seattle-Tacoma International Airport with a ransom demand of .8 million. Microsoft's civil litigation approach allowed for a quicker legal process, leading to the seizure of the signspace[.]cloud domain and the suspension of around 1,000 Fox Tempest accounts. Despite these actions, Fox Tempest has begun shifting to alternative code-signing services, highlighting the evolving nature of cybercrime and the need for users to verify software through independent channels. The confirmed targets of Fox Tempest included organizations in the United States, France, India, China, Brazil, Germany, Japan, the United Kingdom, Italy, and Spain.
AppWizard
May 21, 2026
Valve is facing a lawsuit from New York Attorney General Letitia James, filed in February 2026, which claims that the sale of Cases in Counter-Strike 2 constitutes unregulated gambling aimed at underage players. The lawsuit seeks to stop Valve's promotion of these features and impose financial penalties. Valve argues that opening a Case is similar to purchasing randomized items, a common practice in collectibles, and is urging the court to dismiss the case. The Attorney General is seeking damages amounting to three times Valve's profits from Case sales and a ban on selling these items in New York. Additionally, Valve is involved in a separate lawsuit in the UK regarding competition restrictions imposed on publishers.
TrendTechie
May 20, 2026
The Moscow City Court has ruled against the unauthorized distribution of nearly one hundred Soviet films, following a request from Mosfilm. The ruling targets the torrent tracker torrentino.com, and Mosfilm has 15 days to file a formal lawsuit for a permanent ban on the pirated content. If they do not file, the temporary protective measures will be lifted. The affected films include 94 titles, such as "War and Peace," "The Irony of Fate," and "Solaris." This action follows a prior ruling that blocked access to four Soviet films on rutor.org.
Search