Microsoft Hyper-V News Patch Tuesday brings a Hyper-V vulnerability exploited in the wild, trio of CVSS 9.8 bugs in RDS Admins face prioritising 143 patches including two known-exploited. Jasper Hamill July 09, 2024
Microsoft News Monster Patch Tuesday sets new record: RCE bugs galore God speed to those pushing fixes. The Stack April 09, 2024
Microsoft vulnerabilities News February’s Patch Tuesday brings exploited zero days, Exchange Server headaches As a major Exchange Service update lands, Redmond admits "it is possible that some functionality may break after installing CU14..." Edward Targett February 14, 2024
Microsoft News Patch Tuesday brings lots of chaff, a little buggy wheat too. Some CVE highlights to review. One vulnerability bears a striking resemblance to an 0day that was actively exploited in the wild in November 2023. Edward Targett January 10, 2024
vulnerabilities News A December Patch Tuesday recap: Azure Logic Apps, Power Platform get critical fix A CVSS 9,8 bug that lets attackers spoof legitimate connectors between Microsoft/Azure services is the pick of the bunch... The Stack December 13, 2023
vulnerabilities News Three Windows zero days are under attack: Patch up. "Loaded by default on just about every version of Windows, so it provides a broad attack surface" The Stack November 14, 2023
News Microsoft curl vulnerabilities Patch Tuesday is 20: Curl fix lands, Skype’s under attack and there’s a wormable pre-auth RCE in the mix A CVSS 9.8, pre-auth RCE that lets an attacker execute arbitrary code without user interaction is wormable on systems where Message Queuing is enabled. Edward Targett October 11, 2023
Cybersecurity Patch Tuesday puts the cherry on a cake of zero days From SAP, an "update that only became necessary because the Security Note was accidentally previously deleted" and from Microsoft, some strange assessments. Edward Targett September 12, 2023