Exploits and vulnerabilities in Q2 2026
PoC publicWindows DefenderBitLockerOur summary
Kaspersky's Q2 2026 report confirms that proof-of-concept exploits are now publicly available for critical weaknesses in Microsoft Windows Defender, BitLocker, and the Linux kernel. The release of functional code for issues like the "BlueHammer" TOCTOU vulnerability in Windows Defender and local privilege escalation bugs in the Linux page cache allows attackers to immediately target unpatched systems. Organizations should apply patches urgently to mitigate these newly exposed risks.
Kaspersky Securelist publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.