Close Menu
    What's Hot

    Bluesky is getting ‘communities’ | The Verge

    Cracker Barrel stock just hit a 2026 high. Is the infamous logo discourse finally in the past?

    Trump’s ‘Secret Mission’ to Ferry Oil Past Iran Was Widely Disclosed

    Facebook X (Twitter) Instagram
    Trending
    • Bluesky is getting ‘communities’ | The Verge
    • Cracker Barrel stock just hit a 2026 high. Is the infamous logo discourse finally in the past?
    • Trump’s ‘Secret Mission’ to Ferry Oil Past Iran Was Widely Disclosed
    • A Very Different World Cup
    • Maasai women turn drought into income through fodder farming in Tanzania | Agriculture News
    • Surprise upset: GPT-5.5 beats Claude Fable 5 on brutal new Agents’ Last Exam benchmark
    • Fresh off bond sale, Amazon borrows $17.5B from banks as AI spending continues
    • Donald Trump suggests he may not renew trade deal with Mexico and Canada
    interluknewsinterluknews
    • Home
    • Business
      • Corporate News
      • Industry Insights
      • Startups & Entrepreneurship
      • Technology & Innovation
    • Economy
      • Economic Policy
      • Financial Analysis
      • Inflation & Interest Rates
      • Trade & Markets
    • Global
      • Conflicts & Security
      • Diplomacy
      • Global Trends
      • International Affairs
    • Lifestyle
      • Fashion
      • Food & Dining
      • Personal Development
      • Travel
    • Opinion
      • Columns
      • Editorials
      • Expert Opinions
      • Reader Voices
    • More
      • Politics
        • Elections
        • Government & Policy
        • International Relations
        • Political Analysis
      • Sports
        • Cricket
        • Football / Soccer
        • International Sports
        • Local Sports
      • Technology
        • Artificial Intelligence
        • Cybersecurity
        • Gadgets & Reviews
        • Tech News
      • South Africa News
    Facebook X (Twitter) Instagram
    interluknewsinterluknews
    Cybersecurity

    Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows

    adminBy adminJune 11, 2026No Comments4 Mins Read
    Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
    Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Ravie LakshmananJun 10, 2026Zero-Day / Vulnerability

    Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows

    The anonymous security researcher going by the name Chaotic Eclipse (aka Nightmare-Eclipse) has released a proof-of-concept (PoC) exploit for yet another Microsoft Defender zero-day named RoguePlanet.

    “The exploit is a race condition, so it’s a hit or miss,” the researcher, who published the exploit under a new GitHub account “MSNightmare” said. “I have managed to get a 100% success rate on some machines while it struggled to work on others.”

    Should the exploit succeed, the result is a shell with SYSTEM-level privileges, granting the attacker the ability to run arbitrary code or perform unauthorized actions.

    The researcher said the exploit has been tested on Windows 11 and 10 machines with the June 2026 Patch Tuesday updates installed, meaning the exploit works on the up-to-date versions of the desktop operating system.

    Cybersecurity

    That said, the exploit does not work on Windows Server instances in its current form since “standard users cannot mount an ISO image.” Chaotic Eclipse emphasized that Windows Server installations are also vulnerable to the flaw and that the exploit needs to be redesigned for it to work.

    “Getting this PoC to work genuinely drained my soul, it severely degraded my mental and physical health but in the end of May [sic], a full PoC was developed,” the researcher said.

    “Microsoft’s efforts to protect Defender from path redirection attacks are useless, I have a batch of memory corruption vulnerabilities in defender as well and not to mention the other batch of vulnerabilities I have in several other components.”

    Video Credit: ThreatLocker

    Security researcher Will Dormann, in a post shared on Mastodon, said “it’s reportedly not 100% reliable, but it worked on the first attempt for me.”

    RoguePlanet is the latest in a series of Microsoft Defender flaws uncovered by Chaotic Eclipse in recent months –

    These uncoordinated disclosures are part of what’s assessed to be a retaliatory effort following an alleged breakdown in communication between the researcher, who has not publicly identified themselves, and Microsoft.

    In cryptographically signed posts on their Blogger page, Chaotic Eclipse expressed dissatisfaction with the way Microsoft handled the disclosure process and called out the company for revoking access to their Microsoft Security Response Center (MSRC) account, where researchers can report vulnerabilities. The researcher has also accused Redmond of humiliating them, dismissing their reports, failing to compensate them for the identified vulnerabilities, and defaming them.

    Late last month, Microsoft condemned the public vulnerability disclosures, stating they are “never justifiable” and put customers at “unnecessary risk.” It’s worth noting that all three aforementioned Defender vulnerabilities have since been exploited in the wild.

    Cybersecurity

    The public feud has also resulted in the takedown of their GitHub and GitLab accounts. “Microsoft is attempting to misuse its ownership of GitHub to protect only its own products, and misuse its extensive links to law enforcement by branding publishing information about vulnerabilities in its own products as criminal behaviour,” security researcher Kevin Beaumont said.

    “To be clear about our approach to legal matters, we have no intention to pursue action against individuals conducting or publishing their security research,” Microsoft said in an X post. “When an individual breaks the law and engages in malicious activity causing real harm to our customers, we will work with law enforcement as appropriate.”

    “We are committed to approaching every interaction with transparency, clear communication, and professionalism. We continue to believe strongly in Coordinated Vulnerability Disclosure as the foundation for protecting customers and improving our products.”

    Update

    When reached for comment, a Microsoft spokesperson shared the below statement with The Hacker News –

    Microsoft is aware of the reported vulnerability and is actively investigating the validity and potential applicability of these claims. Microsoft is committed to investigating security issues and updating impacted products to protect customers as soon as possible. Importantly, we support coordinated vulnerability disclosure, an industry standard that protects customers and supports the research community by ensuring their findings are thoroughly investigated and addressed before being made public.

    (The story was updated after publication to include a response from Microsoft.)

    access defender Grants Microsoft RoguePlanet system Updated Windows zeroday
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Previous ArticleAmtrak wants people to work from trains. There’s just one problem
    Next Article Everyone wants a piece of Tesla’s battery business
    admin
    • Website

    Related Posts

    CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation

    June 10, 2026

    Unpatched Langflow Flaw CVE-2026-5027 Exploited for Unauthenticated RCE

    June 10, 2026

    Microsoft, like, totally gets why students are booing AI-pilled graduation speakers

    June 10, 2026
    Leave A Reply Cancel Reply

    Demo
    Latest Posts

    Bluesky is getting ‘communities’ | The Verge

    Cracker Barrel stock just hit a 2026 high. Is the infamous logo discourse finally in the past?

    Trump’s ‘Secret Mission’ to Ferry Oil Past Iran Was Widely Disclosed

    A Very Different World Cup

    Latest Posts

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    Advertisement
    Demo

    We are a digital news platform delivering timely, accurate, and insightful coverage of politics, global affairs, business, economy, sports, and more. Our mission is to keep readers informed with reliable news, clear analysis, and stories that truly matter.
    We're social. Connect with us:

    Facebook X (Twitter) Instagram Pinterest YouTube

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.

    Powered by
    ...
    ►
    Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
    None
    ►
    Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
    None
    ►
    Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
    None
    ►
    Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
    None
    ►
    Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
    None
    Powered by