logo

New Microsoft Defender Zero Day Exploit Released Publicly Online

ID: 1926b5ad-41f8-5022-a4ef-12a6b2a116dc

STIX ID: report--1926b5ad-41f8-5022-a4ef-12a6b2a116dc

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-06-10

Date Updated: 2026-06-10

Author: Do Son

...
...

A public proof-of-concept zero-day named 'RoguePlanet' targeting Microsoft Defender was disclosed by researcher 'Nightmare Eclipse'; it exploits a local race condition in the anti-malware service to gain shell access on fully patched Windows 10/11 clients. Organizations should immediately review endpoint telemetry, audit administrative tokens and script calls from mounted ISOs, and prioritize mitigations while a server-capable variant and fixes are evaluated.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.