Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows

2026-06-10T07:24:16Z4b96c7652b0ba50be96426e349f2567eecc7b303176aa8bf8dc9f5c55029b35f
AI-wormCheck Point VPNChrome V8FFmpegGitHub compromiseLinux kernelLiteLLMMicrosoft DefenderPoC releasedPyPI compromiseVeeamWinRARactive exploitationprivilege escalationremote code executionside-channel (SSD/FROST)supply chainzero-day

What happened

A broad wave of high-severity vulnerabilities, active exploitations, and supply‑chain incidents was reported. Key items include a public PoC for a Microsoft Defender zero‑day (“RoguePlanet”) that can yield SYSTEM access; an in-the-wild Chrome V8 zero‑day (CVE-2026-11645); a critical Veeam Backup & Replication RCE (CVE-2026-44963, CVSS 9.4); active exploitation of a Check Point IKEv1 VPN certificate‑validation bypass (CVE-2026-50751); LiteLLM command injection added to CISA KEV (CVE-2026-42271); a public local root exploit for Linux kernel nf_tables (CVE-2026-23111); and a SolarWinds Serv‑U DoS

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
4b96c7652b0ba50be96426e349f2567eecc7b303176aa8bf8dc9f5c55029b35f
Enrichment time
2026-06-10T07:24:16Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.