Certain ASUS laptops get BSOD when upgrading to Windows 11 24H2

October 21, 2024 at 12:48PM Microsoft warns that ASUS X415KA and X515KA laptops may encounter blue screen of death (BSOD) issues when upgrading to Windows 11 version 24H2. Users are advised not to attempt manual updates until a solution is found, as the previous version has reached end of servicing. ### Meeting Takeaways: 1. **Issue … Read more

Microsoft: macOS Vulnerability Potentially Exploited in Adware Attacks

October 18, 2024 at 08:55AM Microsoft reports that the Adload macOS adware may exploit a privacy bypass vulnerability that was recently fixed in Sequoia 15. This highlights ongoing security concerns related to adware attacks on macOS platforms. **Meeting Takeaways:** 1. **Adware Concern:** The Adload macOS adware is potentially exploiting a vulnerability related to privacy bypass. … Read more

Microsoft deprecates PPTP and L2TP VPN protocols in Windows Server

October 12, 2024 at 02:10PM Microsoft has deprecated the Point-to-Point Tunneling Protocol (PPTP) and Layer 2 Tunneling Protocol (L2TP) in future Windows Server versions, urging administrators to transition to more secure protocols. **Meeting Takeaways:** 1. **Deprecation Announcement:** Microsoft has officially deprecated the Point-to-Point Tunneling Protocol (PPTP) and Layer 2 Tunneling Protocol (L2TP) for future versions … Read more

Microsoft fixes Remote Desktop issues caused by Windows Server update

October 8, 2024 at 03:10PM Microsoft’s October 2024 Patch Tuesday addresses a known issue in Windows servers disrupting Remote Desktop connections post-July security updates. It may affect legacy protocol usage. Temporary fixes include firewall customization and registry edits. Notably, this follows previous instances of connectivity problems after security updates. The update addresses 118 vulnerabilities, including … Read more

Microsoft October 2024 Patch Tuesday fixes 5 zero-days, 118 flaws

October 8, 2024 at 02:18PM The text lists numerous CVE IDs and their associated vulnerabilities, including remote code execution, denial of service, elevation of privilege, and information disclosure. These vulnerabilities impact various Microsoft products such as .NET, Visual Studio, Azure, Windows, and Office, among others. The severity ranges from critical to moderate. Based on the … Read more

Windows 11 KB5044284 and KB5044285 cumulative updates released

October 8, 2024 at 01:48PM Microsoft released KB5044284 and KB5044285 Windows 11 cumulative updates for versions 24H2 and 22H2/23H2, addressing security vulnerabilities and resolving 27 bugs and performance issues. Users can install the updates through Windows Update or manually from the Microsoft Update Catalog. The updates include various fixes and improvements, with details available in … Read more

Windows 10 KB5044273 update released with 9 fixes, security updates

October 8, 2024 at 01:26PM Microsoft released the KB5044273 cumulative update for Windows 10 22H2 and 21H2, containing nine changes and fixes, including an opt-in notification for Windows Update. It’s mandatory and includes security updates for October 2024 Patch Tuesday. Users can install it through Settings or manually from the Microsoft Update Catalog. The update … Read more

THN Cybersecurity Recap: Top Threats and Trends (Sep 30 – Oct 6)

October 7, 2024 at 05:57AM The weekly cybersecurity recap covers a range of threats and events, including the takedown of LockBit ransomware operation, a record-breaking DDoS attack, North Korean hackers deploying a new trojan, and a large-scale fraud campaign targeting trading apps on Apple and Google stores. Furthermore, it highlights breaches at major companies and … Read more

U.S. and Microsoft Seize 107 Russian Domains in Major Cyber Fraud Crackdown

October 4, 2024 at 10:18AM Microsoft and the U.S. DoJ announced the seizure of 107 internet domains linked to Russian state-sponsored threat actors engaged in cybercrime. The threat actor, known as COLDRIVER and affiliated with the Russian Federal Security Service, targeted U.S. government, NGOs, and think tanks through spear-phishing campaigns. Microsoft also filed a civil … Read more

DOJ, Microsoft seize 107 domains used in Russia’s Star Blizzard phishing attacks

October 3, 2024 at 12:03PM The US Department of Justice and Microsoft cooperated to seize 107 websites used by Russian cyberspies in a phishing campaign. The targets included US government agencies, think tanks, and other victims. The action disrupted the operations of the Russian Federal Security Service (FSB) hacking unit and led to criminal charges … Read more