Remove patch-tuesday-present-microsoft
article thumbnail

A Basic Timeline of the Exchange Mass-Hack

Krebs on Security

Here’s a brief timeline of what we know leading up to last week’s mass-hack, when hundreds of thousands of Microsoft Exchange Server systems got compromised and seeded with a powerful backdoor Trojan horse program. When did Microsoft find out about attacks on previously unknown vulnerabilities in Exchange? Reston, Va.-based

Hacking 360
article thumbnail

Patch Tuesday Targets 74 Flaws, Including Microsoft Teams, Office

eSecurity Planet

Microsoft’s Patch Tuesday for August 2023 addresses 74 vulnerabilities, six of them critical. The company also issued two advisories, one of them addressing a Microsoft Office flaw that was disclosed but unpatched in last month’s update. The critical Outlook flaw, Barnett added, presents less of a threat.

VPN 90
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Microsoft Patch Tuesday Addresses 130 Flaws – Including Unpatched RomCom Exploit

eSecurity Planet

Microsoft’s Patch Tuesday for July 2023 includes nine critical flaws, and five are actively being exploited. See the Top Patch Management Tools Malicious Drivers Addressed by Advisory Microsoft also released a pair of advisories. Notably, one of those five remains unpatched at this point.

article thumbnail

Microsoft’s December 2023 Patch Tuesday Includes Four Critical Flaws

eSecurity Planet

Microsoft has announced a relatively light Patch Tuesday to end the year. Microsoft announced only one zero-day flaw this month: CVE-2023-20588 , which is found in AMD processors. Microsoft has included the vulnerability in its announcement because the latest Windows updates protect against the flaw.

article thumbnail

Windows PGM Accounts for Half of Patch Tuesday’s Critical Flaws

eSecurity Planet

Microsoft’s Patch Tuesday for June 2023 addresses 78 vulnerabilities, a significant increase from last month’s total of 37. While six of the flaws are critical, Microsoft says none are currently being exploited in the wild. “Let’s hope these bugs get fixed before any active exploitation starts.”

article thumbnail

Critical RDP Vulnerabilities Continue to Proliferate

McAfee

This month’s Patch Tuesday brings us a relatively small number of CVEs being patched, but an abnormally high percentage of noteworthy critical vulnerabilities. Rather than reimplementing the RDP session sharing capability, Microsoft ported the existing RDP client code base into Hyper-V and WDAG. Mitigation: Patch.

article thumbnail

Microsoft IE zero-day exploited in wild, could provide unrestricted operating system access

SC Magazine

Security researchers said the fix for the remote execution flaw found in Microsoft Internet Explorer should top the patching list for security pros following Patch Tuesday yesterday. “It’s critically important that IT teams quickly and efficiently patch this vulnerability,” Goodman said.