Tag: windows
-
Signal blocks Microsoft Recall from screenshotting conversations
Signal has released a new version of its end-to-end encrypted communication app for Windows that prevents Microsoft Recall and users from screenshotting text-based … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2025/05/22/signal-blocks-microsoft-recall-from-screenshotting-conversations/
-
Law enforcement dismantled the infrastructure behind Lumma Stealer MaaS
Microsoft found 394,000 Windows systems talking to Lumma stealer controllers, a victim pool that included global manufacturers. A US court order, with Europol and Japan’s JC3 dismantled the Lumma Stealer malware operation, seizing 2,300 domains used for command-and-control and blocking dark web markets offering the infostealer. A US court order, with Europol and Japan’s JC3,…
-
Signal now blocks Microsoft Recall screenshots on Windows 11
Signal has updated its Windows app to protect users’ privacy by blocking Microsoft’s AI-powered Recall feature from taking screenshots of their conversations. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/signal-now-blocks-microsoft-recall-screenshots-on-windows-11/
-
FBI and Europol Disrupt Lumma Stealer Malware Network Linked to 10 Million Infections
A sprawling operation undertaken by global law enforcement agencies and a consortium of private sector firms has disrupted the online infrastructure associated with a commodity information stealer known as Lumma (aka LummaC or LummaC2), seizing 2,300 domains that acted as the command-and-control (C2) backbone to commandeer infected Windows systems.”Malware like LummaC2 is deployed to steal…
-
Messenger – Signal blockiert Recall-Screenshots in Windows 11
Tags: windowsDer Messenger Signal unterbindet in der neuesten Desktop-Version für Windows 11 die für Recall benötigten Screenshots. First seen on computerbase.de Jump to article: www.computerbase.de/news/apps/messenger-signal-blockiert-recall-screenshots-in-windows-11.92813
-
New Process Injection Technique Evades EDR by Injecting Malicious Code into Windows Processes
Researchers revealed this method exploits shared memory regions and thread context manipulation to execute malicious payloads without triggering standard detection heuristics. Novel process injection technique leveraging execution-only primitives has demonstrated the ability to bypass leading Endpoint Detection and Response (EDR) systems by avoiding traditional memory allocation and modification patterns. Modern EDR solutions typically monitor for…
-
Signal’s new Windows update prevents the system from capturing screenshots of chats
Signal said today that it is updating its Windows app to prevent the system from capturing screenshots, thereby protecting the content that is on display. The company said that this new >>screen security
-
Windows Server Flaw a Shortcut to Privilege Escalation
Akamai Researchers Flag ‘BadSucessor’ in Windows Server 2025. An unpatched flaw in Windows Server 2025 that is trivial to exploit and present in the default configuration is full domain compromised, warns new research from Akamai. The flaw is present in a new account type known as delegated managed service accounts, or dMSA. First seen on…
-
“Microsoft has simply given us no other option,” Signal says as it blocks Windows Recall
Tags: windowsEven after its refurbishing, Recall provides few ways to exclude specific apps. First seen on arstechnica.com Jump to article: arstechnica.com/security/2025/05/signal-resorts-to-weird-trick-to-block-windows-recall-in-desktop-app/
-
Windows 11 Introduces Enhanced Administrator Protection to Strengthen Security Against Elevated Privilege Attacks
Microsoft has unveiled Administrator Protection, a groundbreaking security feature for Windows 11 designed to safeguard systems against privilege escalation attacks. This new capability creates a security boundary around administrative operations, significantly reducing the attack surface that hackers exploit when targeting elevated processes. According to Microsoft’s Digital Defense Report 2024, token theft incidents have escalated to…
-
Unpatched Windows Server Flaw Threatens Active Directory Users
Attackers can exploit a vulnerability present in the delegated Managed Service Account (dMSA) feature that fumbles permission handling and is present by default. First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/unpatched-windows-server-flaw-threatens-active-directory-users
-
ThreatLocker Patch Management: A Security-First Approach to Closing Vulnerability Windows
Patching is basic cyber hygiene, but executing it at scale, securely, and fast? That’s the real challenge. ThreatLocker’s Patch Management flips the script with control, visibility, and Zero Trust workflows built for today’s threat landscape. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/threatlocker-patch-management-a-security-first-approach-to-closing-vulnerability-windows/
-
A house full of open windows: Why telecoms may never purge their networks of Salt Typhoon
Experts tell CyberScoop that the U.S. telecom system is just too technologically fragmented to gather a clear picture of threats, and too big to ever fully eject all espionage efforts. First seen on cyberscoop.com Jump to article: cyberscoop.com/salt-typhoon-chinese-hackers-us-telecom-breach/
-
Upgrade to Microsoft Windows 11 Home for Just $15
You can now upgrade up to five computers to Microsoft Windows 11 Home for one low price and get a new sleek interface, advanced tools and enhanced security. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/microsoft-windows-11-home/
-
BSidesLV24 GroundFloor Windows EventLog Persistence? The Windows Can Help Us
Author/Presenter: Fabricio Gimenes Our sincere appreciation to BSidesLV, and the Presenters/Authors for publishing their erudite Security BSidesLV24 content. Originating from the conference’s events located at the Tuscany Suites & Casino; and via the organizations YouTube channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/05/bsideslv24-groundfloor-windows-eventlog-persistence-the-windows-can-help-us/
-
Schwachstelle CVE-2025-0411 in 7-ZIP ermöglicht MoW-Bypass
Ich hole mal ein Thema hoch, was Nutzer des Archivprogramms 7-ZIP betrifft. Seit Januar 2025 ist die Schwachstelle CVE-2025-0411 in 7-ZIP bekannt. Diese ermöglicht einem Remote-Angreifer unter Windows die Mark of the Web-Kennung als Schutzfunktion zu umgehen und wird in … First seen on borncity.com Jump to article: www.borncity.com/blog/2025/05/21/schwachstelle-cve-2025-0411-in-7-zip-ermoeglicht-mow-bypass/
-
VanHelsing ransomware builder leaked on hacking forum
The VanHelsing ransomware-as-a-service operation published the source code for its affiliate panel, data leak blog, and Windows encryptor builder after an old developer tried to sell it on the RAMP cybercrime forum. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/vanhelsing-ransomware-builder-leaked-on-hacking-forum/
-
Windows 11’s most important new feature is post-quantum cryptography. Here’s why.
Tags: windowsFor the first time, new quantum-safe algorithms can be invoked using standard Windows APIs. First seen on arstechnica.com Jump to article: arstechnica.com/security/2025/05/heres-how-windows-11-aims-to-make-the-world-safe-in-the-post-quantum-era/
-
LastOS slaps neon paint on Linux Mint and dares you to run Photoshop
Another distro for Windows users presumably ones who love bling First seen on theregister.com Jump to article: www.theregister.com/2025/05/19/lastos/
-
Windows 11 Privilege Escalation Vulnerability Let Attackers Gain Admin Access in Under 300 Milliseconds
Security researchers have uncovered a critical vulnerability in Windows 11 that allowed attackers to escalate privileges from a standard user to system-level administrator in just 300 milliseconds. The flaw, tracked as CVE-2025-24076, has been patched by Microsoft but represents a significant security risk for unpatched systems. The vulnerability leveraged a Dynamic-link Library (DLL) hijacking technique…
-
Datenverlust vermeiden und verloren geglaubte Daten wieder beschaffen – Daten in Windows mit Uneraser wiederherstellen
Tags: windowsFirst seen on security-insider.de Jump to article: www.security-insider.de/daten-in-windows-mit-uneraser-wiederherstellen-a-54d747aafe1e97259446b6f0272d2f38/
-
Microsoft Issues Urgent Patch to Resolve BitLocker Recovery Problem
Microsoft has released an emergency update to address a critical issue affecting Windows 10 devices with specific Intel processors. The update (KB5061768) fixes a problem introduced in the May 13, 2025 security update that was causing unexpected system failures and forcing users to enter BitLocker recovery keys. This fix comes as Microsoft continues its regular…
-
The Windows Subsystem for Linux goes open source
Microsoft has officially open-sourced the Windows Subsystem for Linux (WSL), closing the very first issue ever filed on the Microsoft/WSL GitHub repository: “Will this be open … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2025/05/20/microsoft-wsl-open-sourced/
-
Windows 10: Notfallfix für Bitlocker-Panne erfordert manuellen Eingriff
Einige Windows-10-Systeme fragen nach der Installation des Mai-Updates wiederholt den Bitlocker-Key ab. Ein Fix ist nun verfügbar, muss aber manuell eingespielt werden. First seen on golem.de Jump to article: www.golem.de/news/windows-10-notfallfix-fuer-bitlocker-panne-erfordert-manuellen-eingriff-2505-196357.html
-
Windows 11 24H2: KB5058411 wirft Update-Fehler 0x800f081f
Kurze Frage in die Runde der Blog-Leser, ob die Installation des Mai 2025-Updates KB5058411 für Windows 11 24H2 durchgelaufen ist. Mir liegt eine Anfrage vor, ob mir etwas zum Fehler KB5058411 aus der Leserschaft vorliegt. Es ist ein eher generischer … First seen on borncity.com Jump to article: www.borncity.com/blog/2025/05/20/windows-11-24h2-kb5058411-wirft-update-fehler-0x800f081f/
-
Cache Timing Techniques Used to Bypass Windows 11 KASLR and Reveal Kernel Base
Cache timing side-channel attacks have been used to circumvent Kernel Address Space Layout Randomization (KASLR) on fully updated Windows 11 PCs, which is a startling discovery for cybersecurity aficionados and Windows kernel developers. KASLR, a critical security mechanism, randomizes the memory location of the kernel base to thwart exploitation attempts. However, as detailed in a…
-
Windows 10 emergency updates fix BitLocker recovery issues
Microsoft has released out-of-band updates to fix a known issue causing Windows 10 systems to boot into BitLocker recovery after installing the May 2025 security updates. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/windows-10-emergency-updates-fix-bitlocker-recovery-issues/
-
Hackers Exploit AutoIT Scripts to Deploy Malware Targeting Windows Systems
Cybersecurity researchers have unearthed a sophisticated attack leveraging AutoIT, a long-standing scripting language known for its deep integration with Windows operating systems. Often compared to .NET for its persistence in malicious campaigns, AutoIT’s simplicity and ability to interact with Windows components make it a favored tool among cybercriminals. This weekend, a particularly intricate malware delivery…
-
Microsoft unveils Windows AI Foundry for AI-powered PC apps
Microsoft is replacing ‘Copilot Runtime’ with Windows AI Foundry to help developers build, experiment, and reach users with AI experiences in their apps. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-unveils-windows-ai-foundry-for-ai-powered-pc-apps/
-
Microsoft open-sources Windows Subsystem for Linux at Build 2025
Microsoft has open-sourced the Windows Subsystem for Linux (WSL), making its source code available on GitHub, except for a few components that are part of Windows. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-open-sources-windows-subsystem-for-linux-at-build-2025/

