Microsoft says it's hard at work on a patch for this worrying Defender zero-day
- Microsoft confirms RoguePlanet as CVE‑2026‑50656, an elevation‑of‑privilege flaw in Defender’s Malware Protection Engine
- Disclosed by Chaotic Eclipse as a race‑condition zero‑day granting SYSTEM privileges on fully patched Windows 10/11
- Seventh exploit in their campaign; PoC validated by ThreatLocker, with Microsoft promising a fix despite ongoing feud
Microsoft has assigned a unique identifier for the recently-disclosed RoguePlanet vulnerability and confirmed it is now working on a fix.
"Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as 'RoguePlanet,' the company said in a recently disclosed security advisory.
"We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available."
Chaotic Eclipse's grudge
A security researcher with the alias Chaotic Eclipse recently disclosed a zero-day vulnerability in a fully patched Windows 11device, just hours after Microsoft...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE