CVE Tools

New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defender

SecurityWeekBy Ionut Arghire

PoC publicMicrosoft Defender

Our summary

Researcher Nightmare Eclipse has published the proof-of-concept code for ShieldCrash, a new zero-day vulnerability affecting Microsoft Defender on fully patched Windows systems. The exploit allows for arbitrary file reads and full System privilege escalation, serving as a bypass for previous flaws including CVE-2026-50656 (RoguePlanet) and CVE-2026-69414 (ShieldBreak). Security experts caution that the repeated ability to circumvent these fixes indicates fundamental weaknesses in how the vendor addresses the underlying attack surface.

Read at SecurityWeek

SecurityWeek publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store