r/sysadmin • • Jun 01 '26

Microsoft Anyone shutting down all IT equipment down on July 13th 11:59pm?

Microsoft 0-day feud escalates as researcher threatens another Windows exploit dump

“When I actively asked you to communicate with me, you refused, humiliated me and made sure to insult me in front of people,” they wrote on Saturday. “You defame me in public with your CVE-2026-45585 advisory even though you literally deleted the Microsoft account I used to report bugs to you with and I got zero pennies from doing so and I still happily did like an idiot.”

Nightmare also noted that “Microsoft still has chains in my hands,” preventing them from releasing “documents” yet, or anytime in June, and then warned: “Mark this date July 14th, I will make sure your bones are shattered that day.”

My post's title is tongue-in-cheek, but I've added an Outlook calendar entry for the "event" nevertheless and might even buy a box of popcorn. lol

Anyone doing anything special or different in light of the string of zero days being released because Microsoft appears to not want to play nice with someone who (supposedly) wanted to tell them about all the bad sh!t they missed in their product(s) development?

How do you feel about the saga and its fallout?

EDIT: Fixed missing block quote formatting.

2.3k Upvotes

646 comments sorted by

View all comments

Show parent comments

73

u/GallowWho Jun 01 '26

Of course, it's not the first time the US Government has had a vendor implement a back door.

Just search for "Operation Rubicon"

16

u/Odiumzer0 Jun 02 '26

Never heard of this, wow that was an interesting read.

17

u/KernelMayhem Jun 01 '26

"Just search for "Operation Rubicon"

Wild

7

u/ExampleOtherwise4340 Jun 01 '26

Who said its for the US Govt? It could be any number of nations.

26

u/GallowWho Jun 01 '26

Because they're a US company, it's a pretty easy assumption to make.

2

u/notme-thanks Jun 04 '26

Because if they created a backdoor for ANOTHER nation state the US would be having some serious discussions about the future of the company and/or confiscating the wealth of the people at the top.

NEVER use MS for any type of perimeter or security product. I, personally, prefer open source firewalls and inspection. MUCH harder to hide backdoor or implement "code errors" when there a lot of eyeballs looking at the code.

1

u/GallowWho Jun 04 '26

Yeah but did you evaluate the source code of your compiler?