Back to News
Security NewsHighIncidentvulnerability

Three Microsoft Defender Zero-Days Actively Exploited; Two Still Unpatched

UnknownApr 17, 2026(23 days ago)

Threat actors are exploiting three zero-day vulnerabilities in Microsoft Defender to gain elevated privileges.

Huntress is warning that threat actors are exploiting three recently disclosed security flaws in Microsoft Defender to gain elevated privileges in compromised systems. The activity involves the exploitation of three vulnerabilities that are codenamed BlueHammer (requires GitHub sign-in), RedSun, and UnDefend, all of which were released as zero-days by a researcher known as Chaotic Eclipse (

Potentially Affected Vendors
Microsoft Azure

Vendors are matched automatically based on AI analysis. Verify with official sources.

Related News

Get Personalized Alerts

Track vendors and receive alerts when security incidents affect your supply chain.

What We Monitor

Security Incidents

Data breaches, ransomware, and unauthorized access

Vulnerabilities

CVEs and vendor security advisories

Compliance Updates

Regulatory changes and certification news

Legal News

Privacy laws and enforcement actions

Vendor Directory

Browse our directory of SaaS vendors with security documentation and compliance information.