Netskope Threat Labs

CVE-2021-31956

ATP Sandbox Adv. HeuristicsNetskope IPS

This detection identifies exploitation attempts targeting CVE-2021-31956, which has a HIGH severity rating. Microsoft's advisory names this issue the Windows NTFS Elevation of Privilege Vulnerability, which lets a local cyberattacker gain elevated privileges on a target system.

First seen
May 2022
Last seen
September 2026
Alert Name
Win64.Exploit.CVE-2021-31956