Browsing Category
Microsoft
17 posts
Windows Server Updates Blamed For Domain Controller Crashes
Server administrators who have applied the most recent Windows Server updates are reporting this week that crashes and reboots are occurring. Multiple KBs are attributed with causing the unstable behavior. Administrators are urged to delay applying updates or take additional measures to fix the issues if the updates have already been applied.
March 21, 2024 17:17 GMT
March 2023 Patch Tuesday Closes Two Zero-Days Actively Exploited By State-Sponsored Actors
Microsoft's Patch Tuesday for March 2023 fixes more than 80 vulnerabilities, 9 of which are rated critical severity, and 2 zero-days—an Outlook Elevation of Privilege Vulnerability (CVE-2023-23397) and a Windows SmartScreen Security Feature Bypass Vulnerability (CVE-2023-24880).
Administrators are encouraged to apply updates ASAP. If this is not possible, there are some mitigating actions to be taken.
March 15, 2023 18:37 GMT
Follina Zero-Day Allows Zero-Click RCE From Office Docs
JUNE 2, 2022 19:09 GMT Microsoft Office docs are the primary vector for an actively exploited zero-day vulnerability…
June 2, 2022 15:45 GMT
May 2022 Windows Patches Could Cause Auth Issues On Domain Controllers
MAY 19, 2022 16:36 GMT Proceed with caution before patching Domain Controllers in your environment with Microsoft’s May…
May 19, 2022 16:09 GMT
Wormable RPC Vulnerability Among Several Fixed In April Patch Tuesday
APRIL 14, 2022 20:32 GMT Microsoft’s Patch Tuesday for April includes a notably high volume of critical fixes.…
April 14, 2022 18:31 GMT
Microsoft Critical Wormable RCE and Six Zero-Days Highlight January Patch Tuesday
The January 2022 Patch Tuesday is a big one, but shouldn't be postponed as it contains a patch for a critical wormable RCE vulnerability in the HTTP protocol stack.
January 12, 2022 21:32 GMT
High-Priority, Actively-Exploited Vulnerabilities Patched in Exchange and Excel
Microsoft’s Patch Tuesday for November 2021 fixed 55 bugs across several products, six of which are rated critical.…
November 11, 2021 16:51 GMT
Microsoft warns of continued supply chain attacks leveraging service providers and product resellers
Recent nation state attacks are proving that compromising a company through vendor relationships is the new normal. Background…
October 26, 2021 19:13 GMT
October Patch Tuesday Updates More Than 40 Microsoft Products and Technologies
Microsoft has patched a host of vulnerabilities, including three rated “critical” and one actively being exploited by nation…
October 13, 2021 22:51 GMT
Microsoft’s September 2021 Patch Tuesday closes OMIGOD vulnerability which allows RCE on Azure Linux VMs
Reportedly simple to execute, the attack targets a vulnerability in Open Management Infrastructure (OMI) software preloaded on all…
September 17, 2021 15:35 GMT