Disgruntled 0-day hunter 'humiliated' by Microsoft pledges 'bone shattering drop' as Redmond calls cops
The conflict between Microsoft and a disgruntled security researcher known as Nightmare Eclipse has escalated, with the researcher threatening a significant release of vulnerabilities on July 14. Microsoft has publicly condemned the uncoordinated disclosure of six zero-day vulnerabilities, some of which are already being exploited. The situation has raised concerns about the rapid weaponization of disclosed vulnerabilities and the implications for cybersecurity.
- ▪Nightmare Eclipse has released six Windows zero-days, with three currently under active exploitation.
- ▪Microsoft has criticized the uncoordinated disclosure of these vulnerabilities and warned of potential legal action against Nightmare.
- ▪The researcher claims to have been humiliated by Microsoft and has promised a 'bone shattering' release on July 14.
Opening excerpt (first ~120 words) tap to expand
(function() { let windowUrl = window.location.href; windowUrl = windowUrl.substring(windowUrl.indexOf('?') + 1); let messageElement = document.querySelector('.shareableMessage'); if (windowUrl && windowUrl.includes('code') && windowUrl.includes('expires')) { messageElement.style.display = 'block'; } })(); Security Disgruntled 0-day hunter 'humiliated' by Microsoft pledges 'bone shattering drop' as Redmond calls cops Six 0-days, three under active exploitation, more to come on July 14? Jessica Lyons Jessica Lyons Published thu 28 May 2026 // 21:19 UTC The ongoing saga of Microsoft versus Nightmare Eclipse (aka Chaotic Eclipse), the disgruntled bug hunter with a deep understanding of Windows and an even deeper grudge against Microsoft, reached a fever pitch, with the researcher, who has…
Excerpt limited to ~120 words for fair-use compliance. The full article is at The Register.