Security news from the BlueTeamSec community for Friday the 4th of September 2026.
MSNightmare have disclosed FalconFlank, a zero-day privilege escalation in CrowdStrike Falcon that abuses the sensor's macro remediation feature to escalate privileges on Windows 11 and Server 2025. There's a public proof-of-concept out, though CrowdStrike have likely shipped detections by now โ one to flag if you're running Falcon with that feature enabled.
The Lawfare Institute have published a critique of the U.S. persistent engagement cyber strategy, arguing it's rooted in flawed assumptions about adversary behaviour and has intensified tensions rather than creating stability. The authors push for a shift toward evidence-based metrics, hardening critical infrastructure, and using economic tools over continuous offensive operations โ useful context if you're following the broader debate on national cyber posture.
That's your briefing. Attribution sits with the original authors โ the analysis here was automated.