Security News

Bing Chat AI is down, affecting Windows Copilot and more
2023-09-15 11:36

Bing Chat, the famous ChatGPT-powered chatbot that allows users to converse with various personalities and topics has connectivity issues worldwide. BleepingComputer can confirm Bing Chat is not working in Asia and United States.

Windows 11 Snipping Tool gets OCR support to copy text from images
2023-09-14 18:04

Microsoft has added text recognition support to the latest Snipping Tool build, allowing users to select and copy text from screenshots. Named Text Actions, the feature is available starting with Snipping Tool version 11.2308.33.0, as Dave Grochocki, Principal Product Manager Lead for Windows Inbox Apps, explained.

Windows 11 ‘ThemeBleed’ RCE bug gets proof-of-concept exploit
2023-09-14 15:55

Proof-of-concept exploit code has been published for a Windows Themes vulnerability tracked as CVE-2023-38146 that allows remote attackers to execute code. The exploit code was released by Gabe Kirkpatrick, one of the researchers who reported the vulnerability to Microsoft on May 15 and received $5,000 for the bug.

N-Able's Take Control Agent Vulnerability Exposes Windows Systems to Privilege Escalation
2023-09-14 09:52

A high-severity security flaw has been disclosed in N-Able's Take Control Agent that could be exploited by a local unprivileged attacker to gain SYSTEM privileges.Tracked as CVE-2023-27470, the issue relates to a Time-of-Check to Time-of-Use race condition vulnerability, which, when successfully exploited, could be leveraged to delete arbitrary files on a Windows system.

New Windows 11 feature blocks NTLM-based attacks over SMB
2023-09-13 18:27

Microsoft added a new security feature to Windows 11 that lets admins block NTLM over SMB to prevent pass-the-hash, NTLM relay, or password-cracking attacks. This will modify the legacy approach where Kerberos and NTLM authentication negotiations with destination servers would be powered by Windows SPNEGO. When connecting to a remote SMB share, Windows will try to negotiate authentication with the remote computer by performing an NTLM challenge response.

Alert: New Kubernetes Vulnerabilities Enable Remote Attacks on Windows Endpoints
2023-09-13 14:05

Three interrelated high-severity security flaws discovered in Kubernetes could be exploited to achieve remote code execution with elevated privileges on Windows endpoints within a cluster. The issues, tracked as CVE-2023-3676, CVE-2023-3893, and CVE-2023-3955, carry CVSS scores of 8.8 and impact all Kubernetes environments with Windows nodes.

Windows 10 KB5030211 update released with 11 improvements
2023-09-12 18:09

Microsoft has released Windows 10 KB5030211 and KB5030214 cumulative updates for versions 22H2, 21H2, and 1809 to fix problems with the operating system. You can install today's update now by going to Settings, clicking on Windows Update, and selecting 'Check for Updates.

Windows 11 KB5030219 cumulative update released with 24 fixes, changes
2023-09-12 17:25

Microsoft has released the Windows 11 22H2 KB5030219 cumulative update to fix security vulnerabilities and introduce 24 changes, improvements, and bug fixes. KB5030219 is a mandatory Windows 11 cumulative update containing the September 2023 Patch Tuesday security updates.

Windows 10 and 11 in S Mode: What Is It and Should You Use It?
2023-09-12 15:15

In 2017, Microsoft added a feature to its Windows 10 operating system: S mode, a stripped-down, tightly-locked and low-end way to run Windows 10 and the Home edition of Windows 11 that is still PC friendly. S mode is available for Windows Home Edition for Windows 10 and 11 as well as Windows 10 Pro and Windows 10 Education.

Microsoft will block 3rd-party printer drivers in Windows Update
2023-09-11 19:22

Microsoft will block third-party printer driver delivery in Windows Update as part of a substantial and gradual shift in its printer driver strategy over the next 4 years. "With the release of Windows 10 21H2, Windows offers inbox support for Mopria compliant printer devices over network and USB interfaces via the Microsoft IPP Class Driver," Microsoft says.