Tag: windows
-
Play Ransomware Group Used Windows Zero-Day
Previously, Microsoft reported that Storm-2460 had also used the privilege escalation bug to deploy ransomware on organizations in several countries. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/play-ransomware-group-windows-zero-day
-
Security update causes new problem for Windows Hello for Business authentication
Tags: advisory, authentication, business, credentials, cve, flaw, identity, login, microsoft, update, vulnerability, windowsfixing vulnerabilities, of which CVE-2025-26647, the flaw addressed by the buggy fix, was serious enough to warrant immediate attention.But Windows environments are varied, and exceptions arise, especially in relation to the complex subject of authentication. In some cases, the fix for a vulnerability can cause new problems that Microsoft only detects when customers shout about…
-
Play ransomware affiliate leveraged zero-day to deploy malware
The Play ransomware gang exploited a high-severity Windows Common Log File System flaw in zero-day attacks to deploy malware. The Play ransomware gang has exploited a Windows Common Log File System flaw, tracked as CVE-2025-29824, in zero-day attacks to gain SYSTEM privileges and deploy malware on compromised systems. The vulnerability CVE-2025-29824, (CVSS score of 7.8) is a Use after…
-
Technische Probleme – Microsoft behebt nicht alle kritische Fehler in Windows Server 2025
First seen on security-insider.de Jump to article: www.security-insider.de/windows-server-2025-probleme-loesungen-updates-a-1841def01ecb60713b5df7c49bb00ec2/
-
Microsoft unveils new AI agents that can modify Windows settings
Today, Microsoft announced new Windows experiences for Copilot+ PCs, including AI agents that will make changing settings on your Windows computer easier. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-unveils-new-ai-agents-that-can-modify-windows-settings/
-
Microsoft Resolves Group Policy Issue Blocking Windows 11 24H2 Installation
Microsoft has resolved a critical enterprise-focused bug that blocked organizations from deploying Windows 11 24H2 through Windows Server Update Services (WSUS), alongside addressing a separate dual-boot Linux compatibility issue tied to older security updates. These fixes come as part of broader efforts to stabilize the 2024 Update rollout, which introduces AI-driven Copilot+ PC features and…
-
Microsoft pushes fix for Windows 11 24H2 update failures
Microsoft has fixed a known issue preventing Windows 11 24H2 feature updates from being delivered via Windows Server Update Services (WSUS) after installing the April 2025 security updates. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-pushes-fix-for-windows-11-update-0x80240069-errors/
-
Verbraucherzentrale warnt: PC-Neukauf wegen Windows-10-Supportende belastet Umwelt
Microsoft drängt Windows-10-Nutzer zum Erwerb neuer PCs mit Windows 11. Verbraucherschützer sehen das kritisch – vor allem im Hinblick auf die Umwelt. First seen on golem.de Jump to article: www.golem.de/news/verbraucherzentrale-warnt-hohe-umweltbelastung-durch-supportende-von-windows-10-2505-195943.html
-
New ClickFix Attack Imitates Ministry of Defence Website to Target Windows Linux Systems
Tags: attack, cyber, cyberattack, government, india, infection, intelligence, linux, malicious, malware, threat, windowsA newly identified cyberattack campaign has surfaced, leveraging the recognizable branding of India’s Ministry of Defence to distribute cross-platform malware targeting both Windows and Linux systems. Uncovered by threat intelligence researchers at Hunt.io, this operation employs a ClickFix-style infection chain, mimicking official government press release portals to lure unsuspecting users into executing malicious payloads. The…
-
Microsoft pushes fix for Windows 11 update 0x80240069 errors
Microsoft has fixed a known issue preventing Windows 11 24H2 feature updates from being delivered via Windows Server Update Services (WSUS) after installing the April 2025 security updates. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-pushes-fix-for-windows-11-update-0x80240069-errors/
-
Windows Deployment Services Hit by 0-Click UDP Flaw Leading to System Failures
Tags: authentication, cyber, exploit, flaw, malicious, microsoft, network, remote-code-execution, service, windowsA newly discoveredpre-authentication denial-of-service (DoS) vulnerabilityin Microsoft’s Windows Deployment Services (WDS) exposes enterprise networks to instant system crashes via malicious UDP packets. Dubbed a “0-click” flaw, attackers can exploit it remotely without user interaction, draining server memory until critical services fail. While much attention focuses on remote code execution bugs, memory exhaustion vulnerabilities in UDP-based services like…
-
Critical Microsoft 0-Click Telnet Vulnerability Enables Credential Theft Without User Action
A critical vulnerability has been uncovered in Microsoft’s Telnet Client (telnet.exe), enabling attackers to steal Windows credentials from unsuspecting users, even without interaction in certain network scenarios. Security researchers warn that this >>zero-click
-
BSI empfiehlt Upgrade oder Wechsel des Betriebssystems nach Supportende von Windows 10
Zum 14. Oktober 2025 stellt Microsoft den Support für Windows 10 ein, u.a. in den Editionen Home, Pro und Education. Das Betriebssystem erhält dann keine kostenlosen Updates mehr auch solche nicht, die sicherheitsrelevant sind und z.B. Schwachstellen schließen. Allen, die noch Windows 10 nutzen, empfiehlt das Bundesamt für Sicherheit in der Informationstechnik (BSI), rechtzeitig… First…
-
Windows 11 Version 24H2 Enters Final Deployment Phase, Microsoft Lists Known Issues
Some devices will be placed under a compatibility hold as Microsoft works out ongoing issues. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-microsoft-windows-11-version-24h2-general-release/
-
Microsoft is killing Skype today, pushes users to Teams
The Skype video call and messaging service is shutting down today, 14 years after replacing Microsoft’s Windows Live Messenger. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-is-killing-skype-today-pushes-users-to-teams/
-
Gunra Ransomware’s Double”‘Extortion Playbook and Global Impact
Gunra Ransomware, has surfaced as a formidable threat in April 2025, targeting Windows systems across industries such as real estate, pharmaceuticals, and manufacturing. As reported by CYFIRMA, this ransomware employs a sophisticated double-extortion strategy, encrypting victims’ data while exfiltrating sensitive information to coerce payments. With documented attacks in Japan, Egypt, Panama, Italy, and Argentina, Gunra’s…
-
Microsoft silently fixes Start menu bug affecting Windows 10 PCs
Microsoft has silently fixed an issue that broke Start Menu jump lists for all apps on systems running Windows 10, version 22H2. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-silently-fixes-start-menu-bug-affecting-windows-10-pcs/
-
Windows 11 24H2 now ready to rollout to everyone
Microsoft announced over the weekend that the Windows 11 24H2 update is ready to roll out to all compatible PCs, excluding those with safeguard holds. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-windows-11-24h2-now-ready-to-rollout-to-everyone/
-
Researcher Uses Copilot with WinDbg to Simplify Windows Crash Dump Analysis
A researcher has unveiled a novel integration between AI-powered Copilot and Microsoft’s WinDbg, dramatically simplifying Windows crash dump analysis. For decades, debugging Windows crash dumps has been a labor-intensive task. Engineers have been stuck manually entering cryptic commands like!analyze -vand deciphering esoteric hexadecimal output, a process that requires deep experience and nerves of steel. This…
-
Fix öffnet neue Angriffsfläche – Probleme mit Windows-Update für CVE-2025-21204
First seen on security-insider.de Jump to article: www.security-insider.de/patch-fuer-windows-schwachstelle-cve-2025-21204-oeffnet-neue-sicherheitsluecke-a-6d760f47ac11f9497d34d3e83e279b15/
-
Microsofts CEO Nadella sagt 30% des Codes sind KI-generiert
In einem Interview, welches Meta-Chef Mark Zuckerberg mit dem CEO von Microsoft, Satya Nadella, geführt hat, wurden auch Aussagen zum Einsatz von AI genannt. Laut Satya Nadella seien bei Microsoft ca. 30% des Codes von Windows und anderer Produkte durch … First seen on borncity.com Jump to article: www.borncity.com/blog/2025/05/05/microsofts-ceo-nadella-sagt-30-des-codes-sind-ki-generiert/
-
RDP-Zugang mit alten Zugangsdaten aus dem Cache möglich
Die Tage wurde bekannt, dass Remote Desktop-Verbindungen (RDP-Zugänge) auch alte, widerrufene Passwörter aus dem Cache für Verbindungen verwenden können. Das wird von einigen Leuten als Sicherheitsrisiko betrachtet. Microsoft will aber nichts an dieser Situation ändern. Ein Blog-Leser wies hier im … First seen on borncity.com Jump to article: www.borncity.com/blog/2025/05/04/windows-rdp-zugang-mit-alten-zugangsdaten-aus-dem-cache-moeglich/
-
Nahendes Windows-10-Ende – Windows 11 kommt immer noch nicht vom Fleck
Tags: windowsDas Windows-10-Ende naht, doch Windows 11 kommt bei den Marktanteilen nicht vom Fleck. Windows 10 liegt wie gehabt vorne. First seen on computerbase.de Jump to article: www.computerbase.de/news/betriebssysteme/nahendes-windows-10-ende-windows-11-kommt-immer-noch-nicht-vom-fleck.92453
-
Microsoft Rolls Recall Feature Out to General Public After Privacy Backlash
Microsoft expanded the rollout of Recall after months of testing and the addition of new security features. Also, two other AI-powered features for Windows are publicly available. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-microsoft-recall-expands-rollout/
-
Kein Fix geplant: Windows akzeptiert bei RDP-Verbindungen alte Passwörter
Nach einer Passwortänderung bei einem Microsoft-Konto nimmt die Remote-Desktop-Funktion von Windows weiterhin das alte Passwort an. Laut Microsoft mit Absicht. First seen on golem.de Jump to article: www.golem.de/news/kein-fix-geplant-windows-akzeptiert-bei-rdp-verbindungen-alte-passwoerter-2505-195856.html
-
BTW Windows Subsystem for Linux officially uses Arch now
The tryhard’s favorite distro wins an approved home in Microsoft’s OS First seen on theregister.com Jump to article: www.theregister.com/2025/04/30/official_arch_on_wsl2/
-
Fehlercode 0x80240069: Updatepanne verhindert Upgrades auf Windows 11 24H2
Per Wsus initiierte Windows-11-Upgrades schlagen fehl. Ursache ist laut Microsoft das April-Update. Bisher gibt es nur inoffizielle Workarounds. First seen on golem.de Jump to article: www.golem.de/news/fehlercode-0x80240069-updatepanne-verhindert-upgrades-auf-windows-11-24h2-2505-195850.html

