{"id":269060,"date":"2026-06-10T01:22:00","date_gmt":"2026-06-10T05:22:00","guid":{"rendered":"https:\/\/news-you-need.com\/index.php\/2026\/06\/10\/microsoft-defender-rogueplanet-zero-day-grants-system-access-on-updated-windows\/"},"modified":"2026-06-10T05:40:25","modified_gmt":"2026-06-10T09:40:25","slug":"microsoft-defender-rogueplanet-zero-day-grants-system-access-on-updated-windows","status":"publish","type":"post","link":"https:\/\/news-you-need.com\/index.php\/2026\/06\/10\/microsoft-defender-rogueplanet-zero-day-grants-system-access-on-updated-windows\/","title":{"rendered":"Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows"},"content":{"rendered":"<p><a href=\"https:\/\/thehackernews.com\/2026\/06\/microsoft-defender-rogueplanet-zero-day.html\">Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows<\/a><\/p>\n<p><a href=\"https:\/\/thehackernews.com\/2026\/06\/microsoft-defender-rogueplanet-zero-day.html\">https:\/\/thehackernews.com\/2026\/06\/microsoft-defender-rogueplanet-zero-day.html<\/a><\/p>\n<p>Publish Date: <a href=\"publish_date]\">2026-06-10 01:22:00<\/a><\/p>\n<p>Source Domain: <a href=\"thehackernews.com\">thehackernews.com<\/a><\/p>\n<p><span class=\"p-author\">\ue804<span class=\"author\">Ravie Lakshmanan<\/span>\ue802<span class=\"author\">Jun 10, 2026<\/span><\/span><span class=\"p-tags\">Zero-Day \/ Vulnerability<\/span><\/p>\n<p>The anonymous security researcher going by the name Chaotic Eclipse (aka Nightmare-Eclipse) has released a proof-of-concept (PoC) exploit for yet another Microsoft Defender zero-day named RoguePlanet.<\/p>\n<p>&#8220;The exploit is a race condition, so it&#8217;s a hit or miss,&#8221; the researcher, who published the exploit under a new GitHub account, &#8220;MSNightmare&#8221; said. &#8220;I have managed to get a 100% success rate on some machines while it struggled to work on others.&#8221;<\/p>\n<p>Should the exploit succeed, the result is a shell with SYSTEM-level privileges, granting the attacker the ability to run arbitrary code or perform unauthorized actions.<\/p>\n<p>The researcher said the exploit has been tested on Windows 11 and 10 machines with the June 2026 Patch Tuesday updates installed, meaning the exploit works on the up-to-date versions of the desktop operating system.<\/p>\n<p>That said, the exploit does not work on Windows Server instances in its current form since &#8220;standard users cannot mount an ISO image.&#8221; Chaotic Eclipse emphasized that Windows Server installations are also vulnerable to the flaw and that the exploit needs to be redesigned for it to work.<\/p>\n<p>&#8220;Getting this PoC to work genuinely drained my soul, it severely degraded my mental and physical health but in the end of May [sic], a full PoC was developed,&#8221; the researcher said.<\/p>\n<p>&#8220;Microsoft&#8217;s efforts to protect Defender from path redirection attacks are useless, I have a batch of memory corruption vulnerabilities in defender as well and not to mention the other batch of vulnerabilities I have in several other components.&#8221;<\/p>\n<p><iframe loading=\"lazy\" title=\"RoguePlanet Privilege Escalation Demo\" width=\"640\" height=\"480\" src=\"https:\/\/www.youtube.com\/embed\/3v-4-HQMT7U?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share\" referrerpolicy=\"strict-origin-when-cross-origin\" allowfullscreen><\/iframe><\/p>\n<p style=\"text-align: center;\">Video Credit: ThreatLocker<\/p>\n<p>Security researcher Will Dormann, in a post shared on Mastodon, said &#8220;it&#8217;s reportedly not 100% reliable, but it worked on the first attempt for me.&#8221;<\/p>\n<p>RoguePlanet is the latest in a series of flaws uncovered by Chaotic Eclipse in recent months &#8211;<\/p>\n<p>These uncoordinated disclosures are part of&#8230;<\/p>\n<p><a href=\"https:\/\/thehackernews.com\/2026\/06\/microsoft-defender-rogueplanet-zero-day.html\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows https:\/\/thehackernews.com\/2026\/06\/microsoft-defender-rogueplanet-zero-day.html Publish Date: 2026-06-10 01:22:00&#8230;<\/p>\n","protected":false},"author":1,"featured_media":269061,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/blogger.googleusercontent.com\/img\/b\/R29vZ2xl\/AVvXsEibnTGKGBThpUUZgwRx8hcclb0nuPbrV9o3MSZhFoGEp_3DLGRzdJVpj8Xfrnk1cEPUu76_u8R5Lpt10tcaWPUlbHMwbY225I3jyiBx91pYb4dmdBFbDYVai8DS3UcXAk98dTqEuyW0r3D5c2OaHHaXJzRyCAwS32tpmB83cAJRwKxI4GIT2iGnrdBI_EV7\/s1600\/windows-exploit.jpg","fifu_image_alt":"","footnotes":""},"categories":[15],"tags":[31,27],"class_list":["post-269060","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-exploit","tag-vulnerability"],"_links":{"self":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/269060"}],"collection":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/comments?post=269060"}],"version-history":[{"count":1,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/269060\/revisions"}],"predecessor-version":[{"id":269063,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/269060\/revisions\/269063"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/media\/269061"}],"wp:attachment":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/media?parent=269060"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/categories?post=269060"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/tags?post=269060"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}