Back to Feed
VulnerabilitiesJun 10, 2026

Nightmare-Eclipse Drops Yet Another Microsoft Exploit, RoguePlanet

Researcher releases PoC for Windows Defender bug enabling system takeover.

Vendor Watch

Run Microsoft?

Get an email when a reviewed story names Microsoft, usually within the hour.

Free. Your list stays private and never appears in a subject line. One click stops it. How Vendor Watch works

Summary

A disgruntled researcher, known as Nightmare-Eclipse, has released another proof-of-concept exploit targeting a vulnerability in Microsoft Windows Defender. This latest exploit allows for complete system takeover, indicating the researcher's continued campaign against Microsoft. The researcher has shown no signs of ceasing their activities, suggesting further disclosures or exploits may follow.

Indicators of Compromise

  • cve — CVE-2024-30057

Entities

Nightmare-Eclipse (threat_actor)Microsoft (vendor)Windows Defender (product)