“Microsoft fired the skilled people, leaving flowchart followers”: Microsoft’s Security Response Center is being blamed for the zero-day BlueHammer exploit leak, but I can’t tell who’s right


On April 2, 2026, a security researcher using the name Chaotic Eclipse published a blog post stating that they were “doing it again.” Under this warning, a link to a GitHub account page for a user named “Nightmare Eclipse” containing an exploit known as BlueHammer.

BlueHammer, as it turns out, is a zero-day Windows exploit, meaning it was released into the wild ahead of any Microsoft action. BlueHammer has been confirmed to work by Will Dormann, a principal vulnerability analyst at Tharros (via BleepingComputer).



Source link