4 of 100 stories tagged “Windows Security”
More 129

Microsoft Tells Users to Ignore False 'Antivirus Is Turned Off' Alerts
Microsoft has confirmed a known issue in which recent Microsoft Defender Antivirus updates trigger false "Microsoft Defender Antivirus is turned off" alerts in the Windows Security app, even though the antivirus is running normally. The bug affects all supported Windows client and server versions, including Windows 11 26H1 and Windows Server 2025, and a fix is still pending.

Sleepwalker: New Windows Backdoor Hides in Memory Until a 'Magic Packet' Wakes It
Researcher Dominik Reichel has detailed Sleepwalker, a previously unseen passive Windows backdoor that hides in memory as a fake dpapi.dll and stays dormant until it receives a specially crafted network packet, then decrypts a 23-instruction command set over TCP, UDP, ICMP, SMB pipes or VMware VMCI.

Cruciferra Crypter: How a $450-a-Month Service Hides RATs From EDR
Proofpoint has published an analysis of Cruciferra, a crypter service sold since autumn 2025 that combines BYOVD driver abuse, API unhooking and a modified Process Ghosting routine to deliver commodity RATs and infostealers through phishing.

Microsoft Patches "RoguePlanet" Defender Zero-Day (CVE-2026-50656) via Engine Update
Microsoft has released Malware Protection Engine 1.1.26060.3008 to fix "RoguePlanet" (CVE-2026-50656), a Microsoft Defender race-condition zero-day that a researcher using the "Nightmare Eclipse" handle said could grant SYSTEM privileges on fully patched Windows 10 and 11 devices.

