CRITICALAdvisoryAug 26, 2026
Action required
Immediately implement mitigation guidance from Qualys or Microsoft. Hunt for exploitation attempts by monitoring Malware Protection Engine process anomalies, parent-child relationships involving MsMpEng.exe, and any SYSTEM-level privilege escalations from low-privilege accounts. Enable enhanced logging on Defender.
Affected products
Microsoft DefenderMicrosoft Malware Protection EngineMicrosoftQualys
CVE IDs