CVE Tools

Microsoft Reins in RoguePlanet Zero-Day Threat

Dark ReadingBy Rob Wright

Our summary

Microsoft has released an urgent out-of-band patch for a high-severity zero-day vulnerability in Windows Defender, identified as CVE-2026-50656 and named RoguePlanet. The flaw allows attackers to escalate privileges from a regular user to SYSTEM-level access, granting full control over the device. The vulnerability was disclosed by an anonymous researcher known as Nightmare-Eclipse, who has been involved in a public dispute with Microsoft over several months. Despite the availability of a proof-of-concept exploit, there is currently no evidence that the flaw has been exploited in the wild. However, experts warn that the vulnerability poses significant risks, especially if used in conjunction with other initial access methods.

Read at Dark Reading

Dark Reading publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store