Windows Security
The latest Windows Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
RoguePlanet Zero-Day Exploits Defender for SYSTEM Shell on Patched Windows
Nightmare Eclipse, a security researcher known for probing Microsoft's defenses, dropped a zero-day exploit dubbed RoguePlanet on June 10, 2026—barely 24 hours after Microsoft's June Patch Tuesday....
June 2026 Windows Update Breaks Custom Folder Icons: desktop.ini Ignored – Here's Why and How to Fix It
Custom folder icons painstakingly crafted with desktop.ini files have vanished without a trace for thousands of Windows users. The culprit: security updates released on or after June 9, 2026, that...
June 2026 Patch Tuesday: Urgent Windows 11/10 Update Fixes Actively Exploited Zero-Days
Microsoft’s June 9, 2026 Patch Tuesday landed with an unmistakable urgency. The release confronts a massive security haul—described by early reports as record-sized—and includes fixes for...
CVE-2026-42979: Exploit lets local attackers gain SYSTEM via Windows Push Notification race condition
Microsoft has disclosed a new elevation-of-privilege vulnerability in the Windows Push Notification service, tracked as CVE-2026-42979. Revealed on June 9, 2026, as part of this month's Patch Tuesday...
Patch Windows Push Notifications Bug Granting SYSTEM Access Now
Microsoft has patched a high-severity local privilege escalation vulnerability in the Windows Push Notifications service, tracked as CVE-2026-42977. Disclosed on June 9, 2026, as part of the...
Microsoft Patches Important Local Privilege Escalation Flaw in Windows Push Notifications (CVE-2026-42978)
Microsoft has released a security update to address a local privilege escalation vulnerability in the Windows Push Notifications service, tracked as CVE-2026-42978. The flaw, rated Important, could...
Patch Now: CVE-2026-42986 Graphics Bug Lets Local Users Reach SYSTEM.
Microsoft released CVE-2026-42986 as part of its June 2026 Patch Tuesday updates, addressing a high-severity elevation of privilege vulnerability in the Windows Graphics Component. The flaw,...
CVE-2026-42981: Microsoft Patches Windows Performance Monitor RCE Vulnerability (CVSS 8.1) in June 2026 Patch Tuesday
Microsoft's June 9, 2026 Patch Tuesday dropped a high-severity bulletin for CVE-2026-42981, a remote code execution (RCE) flaw in Windows Performance Monitor rated at CVSS 8.1. The vulnerability...
CVE-2026-42973: Windows Push Notification Info Leak Patched in June 2026 Update
Microsoft has addressed a security flaw in Windows Push Notifications that could allow attackers to silently extract sensitive information from compromised systems. The vulnerability, tracked as...
Patch Now: Windows Push Notification Leaks Sensitive Data via CVE-2026-42970
Microsoft's June 2026 Patch Tuesday arrived on June 9, bringing a critical fix for CVE-2026-42970, an information disclosure vulnerability in the Windows Push Notification service. The flaw, now...
Windows Push Notification Flaw CVE-2026-42971 Exposes Sensitive Data, Patch Now
Microsoft addressed an information disclosure vulnerability in the Windows Push Notification service with the release of its June 2026 security updates. Tracked as CVE-2026-42971, the flaw could...
CVE-2026-42969 Windows Push Notification info leak patched in June 2026 update
Microsoft’s June 2026 Patch Tuesday landed on June 9 with fixes for 49 unique CVEs, but one medium-severity vulnerability in particular slipped quietly into the advisory: CVE-2026-42969. It’s an...