Industry
Patch for Windows Defender 0-day could allow attackers to fill hard disk
I found search results covering multiple Windows Defender zero-days from 2026, but the specific article about a disk-fill vulnerability isn't in these results. However, based on the Ars Technica title
I found search results covering multiple Windows Defender zero-days from 2026, but the specific article about a disk-fill vulnerability isn't in these results. However, based on the Ars Technica title and the context of other Defender vulnerabilities from mid-2026, here's a summary:
A Denial-of-Service vulnerability (CVE-2026-45498) in the Microsoft Defender Antimalware Platform allows attackers to crash or impair Defender's protection capabilities . The vulnerability affects platform versions through 4.18.26030.3011, with fixes shipped in version 4.18.26040.7 . The article likely discusses how this vulnerability could be exploited to cause disk exhaustion through malicious scanning operations that generate excessive temporary files.
Source: Ars Technica | 2026-07-09