Microsoft says it is hard at work on a patch for this worrisome Defender zero-day


  • Microsoft confirms RoguePlanet as CVE-2026-50656, an elevation-of-privilege flaw in Defender’s Malware Protection Engine
  • Revealed by Chaotic Eclipse as race-based zero-day that grants SYSTEM privileges on fully patched Windows 10/11
  • Seventh exploit in their campaign; PoC validated by ThreatLocker, with Microsoft promising a fix despite ongoing feud

Microsoft has assigned a unique identifier for the newly disclosed RoguePlanet vulnerability and confirmed that it is now working on a fix.

“Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender, publicly referred to as ‘RoguePlanet,'” the company said in a recently published security advisory.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top