Gallery

Contacts

411 University St, Seattle, USA

engitech@oceanthemes.net

+1 -800-456-478-23

Microsoft has patched two actively exploited zero-day vulnerabilities in its Defender security product line, affecting the Malware Protection Engine and Antimalware Platform deployed across Windows enterprise environments. CVE-2026-41091 allows attackers to gain full administrative control (SYSTEM privilege, equivalent to operating system-level access) of affected endpoints; CVE-2026-45498 can disable endpoint protection at scale, leaving systems undetected and undefended. CISA has added both to the Known Exploited Vulnerabilities catalog with a June 3, 2026 remediation deadline for federal agencies, and the broad deployment of Defender across enterprise Windows fleets makes rapid verification of patch delivery a priority for all organizations.

Author

Tech Jacks Solutions