← Back to feed
Vulnerabilities & PatchesEmerging1 sourceSep 3, 2026 · 08:20via CyberPress

PrettyPrague PoC Claims Avast Antivirus Zero-Day Enables SYSTEM Privilege Escalation

Brief

A publicly released proof-of-concept exploit named PrettyPrague claims to abuse a zero-day flaw in Gen Digital’s Avast Antivirus, allowing a local user to dump Windows Security Account Manager (SAM) data and obtain an NT AUTHORITY\SYSTEM command shell.

The proof of concept was published by the researcher behind the MSNightmare, INFINITE NIGHTMARE, and Nightmare-Eclipse identities.

According to the project’s public repository, PrettyPrague targets Avast Sandbox , a component intended to isolate potentially unsafe activity within the antivirus product’s environment. The researcher alleges that the component can instead be abused as a local privilege-escalation path.

Read more on CyberPress