Thank you for the post and responses. if this "hivenightmare" corresponds to CVE-2021-36934, We expect this to be covered by Exploit Prevention on ENS via Signature 6143.
And I have one open question for McAfee labs regarding the protection of SYSTEM & SECURITY.
Do you have SNS notification or KB article for all the customers?
Thank you for your response. By System and Security may I know if you are referring to best practice KBAs ? May i request you to kindly elaborate further on the requirement for my understanding?
See the link below for more info,
Read access on Windows SAM and also SYSTEM/SECURITY
The test for vulnerable systems:
Thank you for your response. May I know if it would be possible for your to open a Service Request with us to investigate on the same. We would like to know if you can submit your sample/POC for our investigation via the same.
Thank you for highlighting this, We identified the problem you are referring to. Kindly please bear with us while we are working with our Labs team to get this addressed.
ETA when the signature will be available?
Thank you for your kind time and patience with us. The resolution is via Exploit rule just like @Daveb3d 's solution here. Please find this published KBA for your kind perusal: