A recent Microsoft security patch intended to fix the RoguePlanet vulnerability in Windows Defender has inadvertently introduced a new flaw that allows attackers to exhaust system disk space.
Key Points
- Cybersecurity researcher Nightmare-Eclipse discovered that the patch causes Windows Defender to cache excessively large files locally.
- The vulnerability affects users running Windows 11 25H2 and Windows Server 2025.
- A proof-of-concept exploit demonstrates that visiting a malicious SMB server can trigger the disk space exhaustion issue.
- Microsoft has not yet issued a formal comment or a secondary patch to address this specific defect.