Microsoft Patches Vulnerabilities in Power Platform, Imagine Cup Site

October 16, 2024 at 08:34AM Microsoft has addressed critical vulnerabilities related to privilege escalation and information disclosure in its Power Platform, Dataverse, and the Imagine Cup website, ensuring enhanced security. **Meeting Takeaways:** 1. Microsoft has addressed and patched critical vulnerabilities that could lead to privilege escalation and information disclosure. 2. The affected platforms include: – … Read more

Microsoft issues 117 patches – some for flaws already under attack

October 8, 2024 at 07:40PM Patch Tuesday released 117 Microsoft patches, addressing serious vulnerabilities including CVE-2024-43572, a high-risk flaw allowing unauthorized code execution, and CVE-2024-43573, a moderate spoofing issue. Adobe and SAP also issued numerous updates, with notable concerns in BusinessObjects and Apache Log4j related to their respective vulnerabilities. ### Meeting Takeaways **Patch Tuesday Overview … Read more

Microsoft’s July Update Patches 143 Flaws, Including Two Actively Exploited

July 10, 2024 at 08:09AM Microsoft has released patches for 143 security flaws, including two actively exploited vulnerabilities. The flaws affect Windows, Edge browser, Hyper-V, and Office, among others. One of the exploited flaws is a remote code execution bug impacting .NET and Visual Studio. Other vendors have also issued security updates. [Word Count: 49] … Read more

Microsoft Has Yet to Patch 7 Pwn2Own Zero-Days

May 17, 2024 at 08:09AM Seven Windows privilege escalation vulnerabilities discovered at Pwn2Own 2024 remain unpatched by Microsoft, with only one fix issued so far. Trend Micro’s Zero Day Initiative, which oversees Pwn2Own, notes the potential threat these bugs pose. Microsoft’s lag in resolving these issues contrasts with prompt actions by other tech companies, prompting … Read more

Patch Tuesday: Microsoft Flags Major Bugs in HyperV, Exchange Server 

March 12, 2024 at 03:51PM Microsoft rolled out patches for 60 security vulnerabilities in Windows, including critical flaws in HyperV and Open Management Infrastructure. Other fixes cover issues in Microsoft Excel and Azure Kubernetes, and Adobe also released patches for critical-severity vulnerabilities in several enterprise products. Both companies reported no active exploits for the addressed … Read more

Microsoft’s Final 2023 Patch Tuesday: 33 Flaws Fixed, Including 4 Critical

December 13, 2023 at 01:48AM Microsoft’s final 2023 Patch Tuesday update addressed 33 flaws, with 4 rated Critical and 29 rated Important. This year, they’ve patched over 900 flaws, including vulnerabilities like remote code execution and information disclosure. Akamai also discovered attacks against Active Directory domains using Microsoft DHCP servers, prompting recommendations from Microsoft. Other … Read more

Final Patch Tuesday of 2023 goes out with a bang

December 12, 2023 at 07:47PM The final Patch Tuesday of 2023 requires updates for Windows, Adobe, Google, Cisco, FortiGuard, SAP, VMware, Atlassian, and Apple products. Apple issued emergency fixes for vulnerabilities in iOS devices, Macs, Apple TV, and Apple Watch. Microsoft released over 30 patches, including critical vulnerabilities. Adobe addressed 212 vulnerabilities. Google’s Android security … Read more