Windows 'MiniPlasma' Exploit: SYSTEM Access, Proof-of-Concept Public

Unpatched flaw in Windows Cloud Filter driver hands SYSTEM access to attackers. Microsoft's radio silence continues.

By Byte-Pulse Newsroom·AI-augmented editorial system·May 17, 2026·2 min read
Serhat Er — Founder & Editor-in-ChiefEdited bySerhat Er·Founder & Editor-in-Chief
Updated Aug 11, 2026
Windows 'MiniPlasma' Exploit: SYSTEM Access, Proof-of-Concept Public
Byte-Pulse original cover. Source story: BleepingComputer.

A new Windows flaw, dubbed 'MiniPlasma,' is out there. It lets attackers snag SYSTEM-level access even on fully patched machines. Cybersecurity researcher Chaotic Eclipse just dropped the exploit publicly. It zeros in on a bug in the Windows Cloud Filter driver, specifically the 'HsmOsBlockPlaceholderAccess' routine. Here's the kicker: James Forshaw of Google Project Zero first reported this vulnerability back in 2020. It was supposedly patched. But it's back.

A Scar Reopened

This MiniPlasma exploit? It points to a worrying lapse in Microsoft's patch management. Chaotic Eclipse says the 2020 issue, CVE-2020-17103, still works. Microsoft claimed a fix in December 2020. Yet BleepingComputer and other security pros confirm the exploit runs just fine on the latest Windows 11 updates.

It lets attackers create arbitrary registry keys, totally bypassing access checks. Think about that. This can bump a regular user's privileges straight up to SYSTEM level. Pretty big security risk, wouldn't you say?

Not Their First Rodeo

This isn't Chaotic Eclipse's first rodeo. The researcher has dropped a series of zero-day vulnerabilities. It's a protest, actually, against how Microsoft handles bug bounties and vulnerability disclosures. Some of these, like BlueHammer, RedSun, and UnDefend, have even been actively exploited after they went public.

  • BlueHammer: A local privilege escalation flaw.
  • RedSun: Another escalation bug. Microsoft, for its part, patched this one quietly.
  • UnDefend: A tool to hit Windows Defender with a Denial of Service attack.

Europe's Stake

Europe's cybersecurity scene? It's feeling this keenly. Windows platforms are everywhere, across pretty much every industry. And GDPR? That adds another layer of pain. Data breaches from these kinds of flaws could mean hefty fines. Remember when software giants faced huge scrutiny and penalties over security oversights? Yeah, like that.

So, What Now?

For you, the user, or you, the IT admin? This exploit means you need to be on your toes. Vigilance. Proactive security. Update your systems. Get extra security tools. Seriously. It's about mitigating those potential risks. And keep an eye on Microsoft. See what they do about patches.

The Big Questions

  • Microsoft hasn't said a word about MiniPlasma. Not officially, anyway.
  • No one knows if a new patch is coming. Or when.
  • How much is this actually being exploited out there? Pure speculation right now.

Why It Matters

The MiniPlasma exploit? It really chips away at trust in Microsoft's patching. A vulnerability that was supposedly fixed, now back again. Doesn't exactly inspire confidence in their security processes, does it? Threats keep evolving. Microsoft needs solid, transparent patch management. It's about user trust. It's about data integrity. Simple as that.

Discuss this story

Got a take, a correction, or a follow-up tip? Reply where you read — we read everything.

Found an error? File a correction at /corrections. Substantive corrections are logged publicly.

#windows#zero-day#security#microsoft#vulnerability
Get the 5 tech stories worth your time — 3× a week

One short email. The most important Security news, fact-checked, no fluff. Free, unsubscribe anytime.

More from Security

About the author
AI-augmented editorial system

The Byte-Pulse Newsroom is the editorial system that produces Byte-Pulse's daily tech news coverage. Each story is cross-referenced across 3+ independent outlets, drafted with AI assistance by the newsroom system (Drafter → Editor → Fact-Checker → Polisher), and reviewed by Serhat Er, Editor-in-Chief, before publication. We disclose AI augmentation openly. Editorial accountability stays with the named editor on every article. Tips: editorial@byte-pulse.net.

HardwareAIGamingMobileSecurity
Editorially reviewed on . Spotted an error? Tell us.
From other sections

Don’t miss these

Android Auto vs. CarPlay: Open vs. Controlled Infotainment Ecosystems
📱 Mobile

Android Auto vs. CarPlay: Open vs. Controlled Infotainment Ecosystems

A deep dive into Android Auto's flexibility versus Apple CarPlay's curated experience, impacting user choice and OEM strategy

By Byte-Pulse Newsroom·17h ago·3 min
D23 2026: Disney's Content Deluge Sparks Questions About Strategy
🌐 Web & Apps

D23 2026: Disney's Content Deluge Sparks Questions About Strategy

Byte-Pulse cuts through D23 hype: We dissect Disney's ambitious content slate, from Simpsons: Hit & Run to Ahsoka season 2, and question the real-world implications and European market strategy.

By Byte-Pulse Newsroom·2 days ago·4 min
Zelnick's Streaming Vision: Hype or Hard Reality for GTA 6?
🎮 Gaming

Zelnick's Streaming Vision: Hype or Hard Reality for GTA 6?

Byte-Pulse examines Take-Two CEO Strauss Zelnick's bold prediction of widespread game streaming by 2029, contrasting it with the immediate demands of GTA 6 and the often-overlooked practicalities of European hardware logistics.

By Byte-Pulse Newsroom·Aug 08, 2026·7 min0
Ugreen's 200W Charger: Powerhouse or Marketing Hype?
⚙️ Hardware

Ugreen's 200W Charger: Powerhouse or Marketing Hype?

We analyze the Ugreen 200W charger's technical prowess, real-world utility, and the Amazon deal, highlighting its strengths and limitations

By Byte-Pulse Newsroom·Aug 06, 2026·4 min
Google's Grip on Android App Distribution Under Fire
📱 Mobile

Google's Grip on Android App Distribution Under Fire

US District Judge James Donato gives Google one week to fix its deliberately obscured third-party app store access, highlighting Google's resistance to fair competition

By Byte-Pulse Newsroom·2 days ago·4 min
Spotify Relaunches AI Running Mode for iOS Premium Users
🌐 Web & Apps

Spotify Relaunches AI Running Mode for iOS Premium Users

Spotify's new Running Mode for iOS uses AI to sync music with your stride, but its success hinges on AI quality and user input

By Byte-Pulse Newsroom·Jul 30, 2026·4 min
Cookies & ads

We fund this site through ads (Google AdSense and others) and use analytics to see what works. Both may set cookies. You decide what is OK — your choice is remembered.

Details in our Privacy Policy.