www.malwarebytes.com 6/18/2026, 1:30:48 PM · external

Microsoft Defender Bug CVE-2026-50656 Allows Full Windows Control

Microsoft Defender Bug CVE-2026-50656 Allows Full Windows Control
Developing story vulnerability 4 articles tracked
Microsoft Defender zero‑day flaw (CVE-2026-50656) triggers patch work
CyberSIXT Evidence Panel
Primary Source msrc.microsoft.com
CVE Intel
CISA KEV Not in KEV
Patch Patch Available

MICROSOFT confirmed a critical vulnerability named RoguePlanet (CVE-2026-50656) that allows attackers to gain complete control over Windows systems by exploiting weaknesses in Microsoft Defender's Malware Protection Engine. The flaw enables privilege escalation from a standard user to NT AUTHORITY\SYSTEM without requiring advanced hacking skills. Microsoft is currently developing a security update to address this issue.

Users are advised to monitor for updates, back up important data, and consider additional anti-malware solutions like Malwarebytes, which can detect the exploit based on its behavior.

View Primary Source Via www.malwarebytes.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline