Microsoft WSUS Vulnerability Under Active Attack, Urgent Updates Issued

1 min read
Source: theregister.com
Microsoft WSUS Vulnerability Under Active Attack, Urgent Updates Issued
Photo: theregister.com
TL;DR Summary

A critical vulnerability in Windows Server Update Services (WSUS), tracked as CVE-2025-59287, is actively exploited by threat actors across multiple organizations, despite Microsoft releasing an emergency patch. The flaw allows unauthenticated remote code execution, and attackers are conducting reconnaissance and data exfiltration, posing a significant risk to affected servers. Experts warn that the vulnerability's ease of exploitation and the patch's incomplete fix increase the threat landscape, urging organizations to apply updates promptly.

Share this article

Reading Insights

Total Reads

0

Unique Readers

2

Time Saved

4 min

vs 5 min read

Condensed

92%

91372 words

Want the full story? Read the original article

Read on theregister.com