Microsoft Defender 'RoguePlanet' zero-day exploit grants SYSTEM privileges on Windows 10 and 11
By
BleepingComputer
The kind of bagel that ruins lesser bagels for you.
Summary
Security researcher Nightmare Eclipse has released "RoguePlanet," a zero-day exploit targeting Microsoft Defender that grants SYSTEM-level privileges on fully patched Windows 10 and Windows 11 systems. The disclosure follows a series of disputed Windows zero-day releases and comes after Microsoft patched two other flaws during the June 2026 Patch Tuesday update.
Key quotes
· 2 pulledA security researcher known as Nightmare Eclipse has released 'RoguePlanet,' a new Microsoft Defender zero-day exploit that can spawn a command prompt with SYSTEM privileges on fully patched Windows 10 and Windows 11 devices.
The disclosure follows a series of disputed Windows zero-day releases and comes after Microsoft patched two other flaws during the June 2026 Patch Tuesday update.
You might also wanna read
Anonymous researcher releases two new Windows zero-day exploits after Patch Tuesday
An anonymous security researcher (Nightmare-Eclipse/Chaotic Eclipse) has released two new Windows zero-day exploits — YellowKey (a BitLocker
Anonymous researcher releases two new Windows zero-day exploits after Patch Tuesday
An anonymous security researcher (Nightmare-Eclipse/Chaotic Eclipse) has released two new Windows zero-day exploits — YellowKey (a BitLocker
Microsoft zero-day feud escalates as researcher threatens major exploit release on July 14
The ongoing feud between Microsoft and security researcher Nightmare Eclipse (aka Chaotic Eclipse) has escalated, with the researcher having
Microsoft zero-day feud escalates as researcher threatens major exploit release on July 14
The ongoing feud between Microsoft and security researcher Nightmare Eclipse (aka Chaotic Eclipse) has escalated, with the researcher having
Security researcher publishes YellowKey zero-day exploit that bypasses Microsoft BitLocker encryption via USB stick
Security researcher Chaotic Eclipse (Nightmare-Eclipse) has published two new zero-day exploits targeting Microsoft systems after their prev
BlueHammer abuses Windows Defender's update process to gain SYSTEM access
Microsoft bans security researcher from GitHub after zero-day exploit posts; researcher threatens retaliation
A security researcher known as Nightmare-Eclipse (Chaotic Eclipse) has been banned from Microsoft's GitHub platform after allegedly posting
Microsoft bans security researcher from GitHub after zero-day exploit posts; researcher threatens retaliation
A security researcher known as Nightmare-Eclipse (Chaotic Eclipse) has been banned from Microsoft's GitHub platform after allegedly posting
Critical FreePBX Zero-Day Vulnerability CVE-2025-57819 Exposed and Exploited
A critical zero-day vulnerability (CVE-2025-57819) has been discovered in FreePBX, a popular open-source PBX system. The article details how
labs.watchtowr.com·9mo ago