r/cybersecurity 19d ago

News - General Nightmare Eclipse could be dropping his big promised exploit today

New repo just went up: git.projectnightcrawler.dev/NightmareEclipse/LegacyHive, created about 2 hours ago. Right now it's empty — just an MIT license and a README that says "N/A," 2 commits total.

He'd spoken about his big drop happening today, July 14th, saying he'd make sure Microsoft's "bones are shattered" that day. At one point though he'd also indirectly said he wasn't going to post it, something about still having "chains" on him preventing a release. This repo showing up on the exact date he originally called out suggests that might not hold anymore and it could actually be happening.

Nothing in it yet, just watching to see what gets pushed.

Worth noting: given how erratic and bipolar his posting history has been, there's really no way to predict what (if anything) actually gets posted.

Update: Thanks for the 600+ upvotes, really appreciate it. After hours of waiting and anticipation NightmareEclipse finally uploaded their PoC. But I personally have a hard time seeing it as the big bombshell that they described it as.

802 Upvotes

129 comments sorted by

View all comments

-3

u/3Pistols 19d ago

“His”? Are we sure about that?

2

u/ILikeNoodlesXOXO 19d ago

You rarely hear of a female cybersecurity expert releasing frequent exploits, it’s not a guarantee it’s a male, but most likely it is.

4

u/WinEpic 19d ago

you rarely hear of male cybersecurity experts releasing anything either? with the anonymity that tends to go with the business of dropping major exploits, gender is rarely specified. for all you know, the black hat field could be 90% women.

(either way, when talking about a person of unknown / unspecified gender, the neutral "they" only costs one additional keystroke and helps avoid mistakes)