Microsoft has released a patch for the RoguePlanet vulnerability, a newly discovered security flaw in its Windows Defender software that permits privilege escalation to SYSTEM level on Windows 10 and 11. The vulnerability, identified as CVE-2026-50656, was announced a month earlier by security researcher Nightmare Eclipse, known also as Chaotic Eclipse in some contexts.
Nightmare Eclipse disclosed the RoguePlanet vulnerability publically after disputes with Microsoft over vulnerability disclosure and bug bounty practices. The flaw is rooted in a race condition in the Microsoft Malware Protection Engine, allowing attackers to execute code with elevated privileges. This could potentially let unauthorized users manipulate system files or perform dangerous operations.
Despite a proof-of-concept being shared, there have been no confirmed reports of this vulnerability being exploited in the wild.
Microsoft confirmed their acknowledgment of the vulnerability in mid-June 2026 and began issuing the necessary patches early July. The update, part of the Microsoft Malware Protection Engine v1.1.26060.3008, applies automatically, with Microsoft assuring users it should remedy the privilege escalation issues. This update also targets broader security reinforcement through unspecified 'defense-in-depth' changes.
While the patch addresses the privilege escalation threat, Ars Technica reported instances where the update could cause excessive data writing, potentially filling disk space. This emphasizes the importance of continuous monitoring and further testing following any significant software updates to ensure no new vulnerabilities are introduced.
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
Microsoft released a patch for a zero-day vulnerability in Windows Defender, tracked as CVE-2026-50656. Although the patch addresses the flaw that allows remote access to Windows 10 and 11 machines, it inadvertently introduces issues that may allow attackers to write excessive data, consuming all available disk space.
Microsoft has started deploying patches for the RoguePlanet vulnerability, tracked as CVE-2026-50656. This vulnerability allows privilege escalation to system level, following the public release of its exploit by a researcher, but no in-the-wild exploitation has been reported yet.
Microsoft has patched a critical vulnerability, CVE-2026-50656, in its Malware Protection Engine, which allowed privilege escalation to SYSTEM-level. Disclosed by security researcher Chaotic Eclipse, this flaw could have enabled attackers to execute arbitrary code on vulnerable systems.
Microsoft has released a security patch to address the RoguePlanet vulnerability (CVE-2026-50656) affecting Windows 10 and 11 devices. The flaw allows attackers to gain SYSTEM privileges through a race condition in Microsoft Defender, posing a significant security risk.