// Alert

Microsoft 365 threat report

Microsoft patched CVE-2026-62832 (LegacyHive), a Windows User Profile Service zero-day vulnerability disclosed by researcher Nightmare Eclipse after July 2026 Patch Tuesday. The flaw allows non-admin users to modify the classes registry hive and gain code execution when an administrator logs in. The exploit requires additional credentials but poses a privilege escalation risk in shared systems. Detection queries and proof-of-concept code are publicly available.

// Get alerts for Microsoft 365