Content Paint

Patch Tuesday

Patch Tuesday: A wormable bug in a security mechanism and other delights

The bug is in the SPNEGO Extended Negotiation Security Mechanism – which essentially allows a client and server to negotiate the choice of security mechanism that they use.

Patch Tuesday: Another MSHTML zero day exploited

Attackers are going after high-profile targets in the government and defense sectors, with phishing campaigns that use WebDAV and LOLBins to deploy malware

A person wearing a white sheet, dressed like a ghost, waves at the camera. Researchers said a flaw with a windows scripting engine saw the ghost of internet explorer haunt users

Five zero days also known-exploited. Patch up!

Patch Tuesday comes with ransomware exploit and a fat Windows 10 delay

"It’s notable that the exploit first uses the NtQuerySystemInformation API to leak kernel addresses to user mode."

Patch Tuesday: Windows kernel bug exploited in the wild for two years

Windows Server 16 is affected. Get patching…

Patch Tuesday: A “wormable” LDAP bug and two EOP zero days fixed

Lighter than last month, mercifully, but still some urgent fixes.

hyper-v bugs exploited

"Users will likely revolt..."

december patch tuesday 2024

"Exploitation leads to SYSTEM privileges, and if this all sounds familiar, it should..."

Patch Tuesday: Two exploited Microsoft bugs and a CVSS 9.8 "wormable" Kerberos vulnerability

Look out, also, for a decade-old Cisco ASA bug getting popped.

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.