Security News

Microsoft: Windows 10 1809 reaches end of service next week
2020-11-02 12:06

Microsoft today reminded customers that some editions of Windows 10, version 1809 will reach its end of service next week. "On November 10, 2020, the Home, Pro, Pro for Workstation, and IoT Core editions of Windows 10, version 1809 will reach end of service," Microsoft explains on the Windows 10 1809 Health Dashboard.

Microsoft is investigating lost Windows 10 certificates issue
2020-11-02 10:48

Microsoft is investigating a known issue leading to missing system and user certificates after updating certain managed Windows 10 systems using outdated installation media through update management tools, physical media, or ISO images. "System and user certificates might be lost when updating a device from Windows 10, version 1809 or later to a later version of Windows 10," Microsoft explains.

Microsoft Says Hackers Continue to Target Zerologon Vulnerability
2020-10-30 14:30

Microsoft this week revealed that it continues to receive reports from customers of attacks targeting the Zerologon vulnerability. The vulnerability came into the spotlight after the DHS ordered federal agencies to immediately apply available patches, with both Microsoft and CISA publishing information on attackers actively exploiting the bug.

Microsoft Warns Threat Actors Continue to Exploit Zerologon Bug
2020-10-30 11:41

Threat attackers continue to exploit the Microsoft Zerologon vulnerability, a situation that's been a persistent worry to both the company and the U.S. government over the last few months. Despite patching awareness efforts, Microsoft said it is still receiving "a small number of reports from customers and others" about active exploits of the bug tracked as CVE-2020-1472, or Zerologon, according to a blog post by Aanchal Gupta, vice president of engineering for MSRC, on Thursday.

Microsoft driver update change may break Windows 10 plug-and-play
2020-10-29 18:03

Upcoming changes to how Windows 10 automatically installs driver updates may cause plug-and-play to break for some devices. Windows Update is also used to deliver automatic drivers to allow hardware developers to quickly deploy fixes to Windows 10 users encountering bugs in an existing driver.

Microsoft warns of ongoing attacks using Windows Zerologon flaw
2020-10-29 16:46

Microsoft today warned that threat actors are continuing to actively exploit systems unpatched against the ZeroLogon privilege escalation vulnerability in the Netlogon Remote Protocol. Zerologon is a critical flaw that enables attackers to elevate privileges to a domain admin, thus allowing them to take full control over the entire domain, to change any user's password, and to execute any arbitrary command.

Microsoft Introduces Device Vulnerability Report in Defender for Endpoint
2020-10-29 16:01

Microsoft this week announced the availability of a new vulnerability management report in Microsoft Defender, to provide information on vulnerable devices. The new built-in report complements existing Microsoft Defender for Endpoint threat and vulnerability management capabilities and is catered for those looking to gain insights on devices that pose potential risks due to unpatched vulnerabilities.

Microsoft releases KB4580364 update to fix Windows 10 freezes
2020-10-29 14:23

Microsoft has released the KB4580364 non-security update that fixes bugs causing responsiveness issues on affected Windows 10 2004 devices. Windows 10 users who install the KB4580364 release preview update might experience issues with input, might not be able to enter text, or receive unexpected results if using the Microsoft Input Method Editor for Japanese or Chinese languages.

Microsoft Says Iranian Hackers Targeted Attendees of Major Global Policy Conferences
2020-10-29 12:19

The Iran-linked state-sponsored threat group known as Charming Kitten was observed targeting potential attendees of two major international conferences, Microsoft reports. Recently observed attacks, Microsoft says, targeted over 100 high-profile individuals, potential attendees of two upcoming global policy conferences, namely the Munich Security Conference and the Think 20 Summit, which is held in Saudi Arabia.

Microsoft Defender ATP Users Get False Positive Alerts for Mimikatz, Cobalt Strike
2020-10-29 09:36

Microsoft rushed to take action on Wednesday after Defender Advanced Threat Protection users reported getting Cobalt Strike and Mimikatz alerts that turned out to be false positives. It's not surprising that some Microsoft Defender ATP users had a small heart attack on Wednesday when they saw multiple high-severity alerts for Cobalt Strike.