Microsoft's July 2023 Patch Tuesday Reveals Zero-Day Attacks and Flaws

Microsoft has issued an urgent warning about active exploitation of unpatched security flaws in its Windows and Office products by Russian spies and cybercriminals. The company is investigating reports of remote code execution vulnerabilities impacting Windows and Office users, with targeted attacks using specially-crafted Office documents. Microsoft's threat intelligence team flagged a phishing campaign targeting defense and government entities in Europe and North America, using Office zero-day exploits. The company may release an out-of-band patch before the next Patch Tuesday. In addition, Adobe has released urgent patches for critical security flaws in its InDesign and ColdFusion product lines.
- Microsoft Warns of Office Zero-Day Attacks, No Patch Available SecurityWeek
- Microsoft July 2023 Patch Tuesday warns of 6 zero-days, 132 flaws BleepingComputer
- Apple & Microsoft Patch Tuesday, July 2023 Edition – Krebs on Security Krebs on Security
- Microsoft Discloses 5 Zero-Days in Voluminous July Security Update DARKReading
- Microsoft: Unpatched Office zero-day exploited in NATO summit attacks BleepingComputer
- View Full Coverage on Google News
Reading Insights
0
0
2 min
vs 3 min read
81%
503 → 98 words
Want the full story? Read the original article
Read on SecurityWeek