Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows
2026-06-10T07:24:16Z•4b96c7652b0ba50be96426e349f2567eecc7b303176aa8bf8dc9f5c55029b35f
AI-wormCheck Point VPNChrome V8FFmpegGitHub compromiseLinux kernelLiteLLMMicrosoft DefenderPoC releasedPyPI compromiseVeeamWinRARactive exploitationprivilege escalationremote code executionside-channel (SSD/FROST)supply chainzero-day
What happened
A broad wave of high-severity vulnerabilities, active exploitations, and supply‑chain incidents was reported. Key items include a public PoC for a Microsoft Defender zero‑day (“RoguePlanet”) that can yield SYSTEM access; an in-the-wild Chrome V8 zero‑day (CVE-2026-11645); a critical Veeam Backup & Replication RCE (CVE-2026-44963, CVSS 9.4); active exploitation of a Check Point IKEv1 VPN certificate‑validation bypass (CVE-2026-50751); LiteLLM command injection added to CISA KEV (CVE-2026-42271); a public local root exploit for Linux kernel nf_tables (CVE-2026-23111); and a SolarWinds Serv‑U DoS
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 4b96c7652b0ba50be96426e349f2567eecc7b303176aa8bf8dc9f5c55029b35f
- Enrichment time
- 2026-06-10T07:24:16Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.