Researchers with Trustwave’s Spiderlabs team announced the discovery of a new Windows zero-day exploit being offered for sale on the Russian forum exploit.in. A member known as BuggiCorp is offering the exploit, a local privilege escalation vulnerability, for sale to a single buyer with a price tag of $90,000 USD. The Trustwave team believes the exploit is "absolutely genuine" and said the user published proof-of-concept videos showing the exploit in action. The vulnerability further bypassed Microsoft Enhanced Mitigation Experience Toolkit (EMET) protections. No comments from Microsoft were available at the time of this article.
1) I can also make a video.
2) Winblows local roots are a dime a dozen.
Sure. The entertainment part will come when we see who actually coughs up 90 grand for this. Or not.