// Alert

Microsoft 365 threat report

Security researcher Nightmare Eclipse disclosed CVE-2026-69414, dubbed "ShieldBreak," a critical zero-day vulnerability in Microsoft Defender that allows attackers to bypass or disable the widely-deployed endpoint protection platform. Microsoft confirmed active exploitation and is working on a patch. The flaw potentially enables attackers to neutralize endpoint detection before deploying payloads, compromising organizations across all industries that rely on Defender as their primary security control.

// Get alerts for Microsoft 365