Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows
ID: f59a3170-67e0-5386-9fff-a0e71fbc5e34
STIX ID: report--f59a3170-67e0-5386-9fff-a0e71fbc5e34
Feed Name: CosmicBytez Labs
Threat Score
**RoguePlanet** is a publicly disclosed Microsoft Defender zero-day race-condition that enables local privilege escalation to SYSTEM; a PoC was released by an anonymous researcher (Chaotic Eclipse/Nightmare-Eclipse) and no patch was available at disclosure, creating broad exposure across Windows systems. The report details impact, detection and mitigation recommendations, and discusses the ethics of full-disclosure PoC releases.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
