Windows 11 21H2 and Windows Server 2012 reach end of support

October 11, 2023 at 11:32AM Microsoft has officially ended support for Windows Server 2012 and Windows 11, version 21H2. This means that these operating systems will no longer receive security updates, bug fixes, or technical support. Microsoft advises users to upgrade to newer versions or obtain Extended Security Updates (ESUs) to continue receiving essential updates. … Read more

From chaos to cadence: Celebrating two decades of Microsoft’s Patch Tuesday

October 11, 2023 at 09:09AM Microsoft introduced Patch Tuesday in October 2003, a monthly release of software fixes on the second Tuesday of each month. The change brought predictability and stability for IT administrators, who previously faced chaotic patching processes. The number of patches has increased significantly over the years, and other vendors have joined … Read more

ICS Patch Tuesday: Siemens Ruggedcom Devices Affected by Nozomi Component Flaws

October 11, 2023 at 06:42AM Siemens and Schneider Electric have released their Patch Tuesday advisories for October 2023, addressing over 40 vulnerabilities in their products. Siemens has published a dozen advisories, including vulnerabilities in the Ruggedcom APE1808 platform and Nozomi Networks’ Guardian product. Nozomi has already patched these vulnerabilities. Schneider Electric has released advisories for … Read more

Microsoft Releases October 2023 Patches for 103 Flaws, Including 2 Active Exploits

October 11, 2023 at 03:12AM Microsoft has released its October 2023 Patch Tuesday updates, addressing 103 flaws, two of which are actively being exploited. Among the vulnerabilities are information disclosure in Microsoft WordPad and privilege escalation in Skype for Business. Microsoft also fixed flaws in Microsoft Message Queuing and Layer 2 Tunneling Protocol. Additionally, Microsoft … Read more

It’s 2023 and Microsoft WordPad can be exploited to hijack vulnerable systems

October 10, 2023 at 07:58PM Microsoft has released over 100 security updates, including fixes for two bugs that are already being actively exploited. One of the vulnerabilities, known as Rapid Reset, is an HTTP/2 weakness that has been used since August to launch distributed denial of service (DDoS) attacks. Microsoft WordPad also has an information … Read more

October 10, 2023 at 03:10PM – Windows 10 KB5031356 update released with 25 improvements

October 10, 2023 at 03:10PM Microsoft has released the KB5031356 cumulative update for Windows 10 21H2 and 22H2, containing security updates and fixes for various issues. Users can manually install the update through Windows Update or Microsoft Update Catalog. Notable fixes include improvements to the search box experience on the taskbar and addressing issues with … Read more

October 10, 2023 at 03:03PM – Windows 10 KB5031356 update released with 11 improvements

October 10, 2023 at 03:03PM Microsoft has released the optional KB5031356 cumulative update for Windows 10 21H2 and 22H2, containing 25 fixes for various issues. Users can install the update through the Windows Update settings or manually from the Microsoft Update Catalog. The update also addresses a new DDoS attack technique and provides steps to … Read more

October 10, 2023 at 02:36PM – Microsoft Fixes Exploited Zero-Days in WordPad, Skype for Business

October 10, 2023 at 02:36PM Microsoft released a large batch of software and OS updates to address over 100 vulnerabilities across Windows systems. They warned that three of these vulnerabilities are already being exploited. The updates also targeted a zero-day vulnerability in HTTP/2 Rapid Reset that exposed the internet to DDoS attacks. Two other zero-day … Read more

Microsoft Patch Tuesday Haunted by Zero-Days, Wormable Bug

October 10, 2023 at 06:06PM Microsoft’s October Patch Tuesday update addressed two zero-day vulnerabilities that were actively being attacked, affecting Microsoft WordPad and Skype for Business. A critical-rated bug in Message Queuing was also patched. The update included a total of 103 CVEs, with 13 critical-rated vulnerabilities and 20% of the fixes related to Microsoft … Read more

October 10, 2023 at 01:12PM – Patch Tuesday: Code Execution Flaws in Adobe Commerce, Photoshop

October 10, 2023 at 01:12PM Adobe has released patches for 13 security vulnerabilities in its products. Critical flaws in Adobe Commerce and Photoshop require immediate attention. The flaws could lead to arbitrary code execution, privilege escalation, and denial-of-service attacks. The affected software versions include Adobe Commerce and Magento Open Source. Adobe has also fixed a … Read more