Tag

Security Patches

All articles tagged with #security patches

technology1 month ago

Critical Windows RasMan Zero-Day Flaw Exposes Arbitrary Code Execution Risks

A critical vulnerability in Windows' Remote Access Connection Manager (RasMan) allows local attackers to execute arbitrary code with System privileges by exploiting a race condition and a previously unknown zero-day flaw. Microsoft has issued patches for the primary flaw, CVE-2025-59230, but a secondary unpatched vulnerability involving a service crash was exploited to facilitate the attack. Administrators are urged to apply the latest updates immediately.

technology2 months ago

Windows 11 November Update Introduces Redesigned Start Menu and Enhanced Features

Microsoft released mandatory Windows 11 KB5068861 and KB5068865 cumulative updates for versions 25H2/24H2 and 23H2, including security patches, bug fixes, and new features like a redesigned Start menu UI, updated battery icons, and enhanced security protections. The updates also mark the end of support for Windows 11 23H2 and will continue to roll out gradually, with no known new issues.

technology4 months ago

Windows 11 25H2 Nears Release with Key Updates and Fixes

Microsoft's Windows 11 25H2 update is entering its final testing phase in the Release Preview Channel, signaling its imminent release to the general public. The update primarily resets the security update cycle, removes deprecated tools like PowerShell 2.0, and allows for easier removal of preinstalled apps via Group Policy, with no major new features announced.

technology4 months ago

Microsoft's Latest Windows 11 Update Causes Major Performance and Storage Issues

Microsoft's August 2025 Windows security updates have caused severe streaming problems with NDI software on some Windows 10 and 11 systems, leading to lag, stuttering, and audio/video issues. A temporary workaround involves changing the NDI Receive Mode to TCP or UDP. Microsoft is investigating the bug, which affects RUDP connections, and has issued additional updates to fix related problems and gather more user feedback.

technology5 months ago

Microsoft's August 2025 Patch Tuesday Addresses 111 Flaws and Critical Vulnerabilities

Microsoft's August Patch Tuesday addresses 111 issues, including 12 critical vulnerabilities with remote code execution risks, notably in Windows, SharePoint, and Office. Adobe also released patches for 68 CVEs across its products. Other tech giants like SAP, Intel, and Google issued updates fixing multiple vulnerabilities, emphasizing ongoing cybersecurity efforts. Despite no active exploits reported, the severity of these flaws warrants prompt patching to prevent potential attacks.

technology5 months ago

Microsoft Releases Emergency Patches Amid Global SharePoint Exploits

Microsoft has issued emergency security updates for SharePoint to fix two zero-day vulnerabilities, CVE-2025-53770 and CVE-2025-53771, exploited in worldwide ToolShell attacks affecting over 54 organizations. Admins are advised to install the patches immediately, rotate machine keys, and investigate potential breaches using provided tools and logs.

technology7 months ago

June 2025 Patch Tuesday: Critical Vulnerabilities and Zero-Day Exploits in Windows 11

Microsoft is releasing a revised security update for Windows 11 24H2 to address compatibility issues affecting some devices, following the initial Patch Tuesday updates that fixed multiple vulnerabilities. The company has not disclosed specific hardware or software configurations impacted or whether this is a recurring practice. The updates include fixes for critical vulnerabilities and improvements for features like Windows Hello and Remote Desktop.

cybersecurity1 year ago

Thousands of Palo Alto Firewalls Breached in Exploit Campaign

Approximately 2,000 Palo Alto Networks firewalls have been compromised due to two newly discovered vulnerabilities, CVE-2024-0012 and CVE-2024-9474, which allow attackers to gain unauthorized access and root privileges. Despite a decrease in internet-exposed interfaces, the Shadowserver Foundation reports significant exploitation, primarily in the US and India. Palo Alto Networks has released patches and shared indicators of compromise to help mitigate the threat, while emphasizing that most customers follow best practices to secure their systems.

cybersecurity1 year ago

"Fortinet Addresses Critical Vulnerabilities Across FortiClientLinux and Other Products"

Fortinet has released critical security patches to address a vulnerability in FortiClientLinux that could allow arbitrary code execution. The vulnerability, tracked as CVE-2023-45590, affects specific versions of FortiClientLinux and is attributed to an "Improper Control of Generation of Code" flaw. Additionally, Fortinet's April 2024 security patches also resolve issues with FortiClientMac installer and FortiOS/FortiProxy, emphasizing the importance of keeping systems up-to-date to mitigate potential threats.

technology1 year ago

"Google Pixel and Pixel Watch: April 2024 Updates Unveiled"

Google has released the April 2024 security update for Pixel devices, including 28 general security patches for Android and 25 exclusively for Pixel phones, addressing vulnerabilities actively being exploited. The update also includes bug fixes for the Pixel Camera app and biometrics. It is rolling out gradually and can be checked in Settings > System > Software update. Additionally, the Pixel Fold offers a unique folding display, combining the features of a regular Pixel smartphone with the versatility of a tablet-like experience.

technology1 year ago

"Samsung Galaxy S20 Series and Note 20 Users Face Update Uncertainty"

Samsung's Galaxy S20 series, released in 2020, will no longer receive monthly updates and will instead get quarterly software updates until support is completely dropped. This change follows the phones' lack of support for Android 14 and the end of their monthly update cycle with the March 2024 security patch. Despite the disappointment, the series will still receive security updates for a total of five years, exceeding Samsung's original promise, while the newer Galaxy S24 series is now offering seven years of software support.