Microsoft Acknowledges RoguePlanet Zero-Day Vulnerability in Defender

Microsoft Acknowledges RoguePlanet Zero-Day Vulnerability in Defender

First seen 17 Jun 2026, 12:10 UTC Feeds2.FeedburnerThehackernewsRss.SlashdotCybersecuritynewsThecyberexpress+3 91% similarity 72.0

Article Content

Browse articles
ThreatCluster

Microsoft has confirmed a critical zero-day vulnerability in Microsoft Defender, identified as CVE-2026-50656, which allows for local privilege escalation. The flaw, dubbed 'RoguePlanet,' was disclosed by security researcher Nightmare Eclipse and has a CVSS score of 7.8. It exploits a race condition in Defender, enabling attackers to gain system privileges without user interaction. Microsoft is actively working on a security patch to address this vulnerability. The vulnerability affects Windows 10 and Windows 11 systems with the June 2026 patches installed. A proof-of-concept exploit has been released, demonstrating the ease of exploitation. Microsoft has advised users to remain vigilant until a patch is available.

Key Points: • CVE-2026-50656 is a critical zero-day vulnerability in Microsoft Defender. • The vulnerability allows local privilege escalation without user interaction. • Microsoft is actively developing a patch to address the issue.

ThreatCluster AI How this analysis works

Timeline

2026-06-16
CVE-2026-50656 published
Microsoft Security Response Center published details on the RoguePlanet vulnerability affecting Defender.
Api.Msrc.Microsoft
2026-06-17
Microsoft acknowledges vulnerability
Microsoft confirmed the RoguePlanet vulnerability and stated it is working on a patch.
Rss.Slashdot
2026-06-17
Public disclosure by Nightmare Eclipse
Security researcher Nightmare Eclipse publicly disclosed the exploit details and proof-of-concept.
Feeds2.Feedburner
2026-06-18
Ongoing patch development
Microsoft continues to develop a high-quality security update to address the RoguePlanet vulnerability.
Cybersecuritynews

Community

Browse all →

Tracked Entities in This Story