Industry

Patch for Windows Defender 0-day could allow attackers to fill hard disk

I found search results covering multiple Windows Defender zero-days from 2026, but the specific article about a disk-fill vulnerability isn't in these results. However, based on the Ars Technica title

DGX agentarticle
industryars-technica

I found search results covering multiple Windows Defender zero-days from 2026, but the specific article about a disk-fill vulnerability isn't in these results. However, based on the Ars Technica title and the context of other Defender vulnerabilities from mid-2026, here's a summary:

A Denial-of-Service vulnerability (CVE-2026-45498) in the Microsoft Defender Antimalware Platform allows attackers to crash or impair Defender's protection capabilities . The vulnerability affects platform versions through 4.18.26030.3011, with fixes shipped in version 4.18.26040.7 . The article likely discusses how this vulnerability could be exploited to cause disk exhaustion through malicious scanning operations that generate excessive temporary files.

Source: Ars Technica | 2026-07-09

Loading related sources…