Index / Techniques / Exploitation for Priv-Esc
Technique Record · T1068

Exploitation for Priv-Esc

Publicly-reported instances of Exploitation for Priv-Esc bypassing endpoint security products. Maintained on the same basis for every technique in the Index.

41
recorded bypasses
26
products affected

Products recorded as bypassed by Exploitation for Priv-Esc

ProductEntriesHigh-confidenceMost recent
Microsoft 982026-05-22
Palo Alto Networks 222026-06-01
Trellix 222024-01-09
Google 222026-05-22
ESET 222024-07-31
Elastic 222026-05-28
Trend Micro 222025-08-05
Apple 222024-05-11
Undisclosed security vendor 102024-02-28
ConnectWise 112024-03-01
Ivanti 112024-02-28
Fortinet 112024-10-24
Comodo Security 112026-03-16
F5 112026-05-22
CrowdStrike 112024-08-19
Sangfor 112025-06-24
Atlassian 112026-05-22
Wellbia.com Co., Ltd. 112026-05-12
Rapid7 112026-05-15
Zscaler 112024-05-27
HitmanPro 112024-08-19
Stormshield 112023-06-27
Quest 112024-04-30
Sophos 112025-04-11
Broadcom (Symantec) 112024-01-26
Bitdefender 112024-04-09

All entries

ProductConfidenceDisclosedSource
Palo Alto Networks high 2026-06-01cyberscoop.com record →
Elastic high 2026-05-28nvd.nist.gov record →
Microsoft medium 2026-05-22Microsoft Threat Intel record →
F5 high 2026-05-22Microsoft Threat Intel record →
Atlassian high 2026-05-22Microsoft Threat Intel record →
Google high 2026-05-22hackaday.com record →
Microsoft high 2026-05-18www.csoonline.com record →
Microsoft high 2026-05-18thehackernews.com record →
Rapid7 high 2026-05-15nvd.nist.gov record →
Wellbia.com Co., Ltd. high 2026-05-12blacksnufkin.github.io record →
Microsoft high 2026-04-17www.cyderes.com record →
Microsoft high 2026-04-07www.cyderes.com record →
Elastic high 2026-03-18www.tenable.com record →
Comodo Security high 2026-03-16cvefeed.io record →
Trend Micro high 2025-08-05www.sentinelone.com record →
Sangfor high 2025-06-24www.tenable.com record →
Microsoft high 2025-06-10cybersecuritynews.com record →
Microsoft high 2025-05-15cybersecuritynews.com record →
Palo Alto Networks high 2025-05-14security.paloaltonetworks.com record →
Sophos high 2025-04-11www.sophos.com record →
Google high 2025-02-02spycloud.com record →
Trend Micro high 2024-11-18dbugs.ptsecurity.com record →
Fortinet high 2024-10-24cloud.google.com record →
HitmanPro high 2024-08-19securityaffairs.com record →
Microsoft high 2024-08-19securityaffairs.com record →
CrowdStrike high 2024-08-19securityaffairs.com record →
ESET high 2024-07-31www.thezdi.com record →
Zscaler high 2024-05-27spaceraccoon.substack.com record →
Apple high 2024-05-11github.com record →
Quest high 2024-04-30www.tenable.com record →
Bitdefender high 2024-04-09www.sentinelone.com record →
ConnectWise high 2024-03-01www.scworld.com record →
Undisclosed security vendor medium 2024-02-28businessinsights.bitdefender.com record →
Ivanti high 2024-02-28businessinsights.bitdefender.com record →
Microsoft high 2024-02-07research.checkpoint.com record →
ESET high 2024-01-31securityvulnerability.io record →
Broadcom (Symantec) high 2024-01-26cve.armis.com record →
Trellix high 2024-01-09www.sentinelone.com record →
Stormshield high 2023-06-27cve.imfht.com record →
Trellix high 2023-06-09feedly.com record →
Apple high 2023-06-01eugene.kaspersky.com record →

Counts reflect distinct publicly-reported events on record; absence of an entry means no confirmed public report is on file.