Microsoft Releases Emergency Patches for IE 0-Day and Windows Defender Flaw

It’s not a Patch Tuesday, but Microsoft is rolling out emergency out-of-band security patches for two new vulnerabilities, one of which is a critical Internet Explorer zero-day that cyber criminals are actively exploiting in the wild.

Discovered by Cl… Continue reading Microsoft Releases Emergency Patches for IE 0-Day and Windows Defender Flaw

Google Discloses 20-Year-Old Unpatched Flaw Affecting All Versions of Windows

Update — With this month’s patch Tuesday updates, Microsoft has finally addressed this vulnerability, tracked as CVE-2019-1162, by correcting how the Windows operating system handles calls to Advanced Local Procedure Call (ALPC).

A Google security res… Continue reading Google Discloses 20-Year-Old Unpatched Flaw Affecting All Versions of Windows

Hacker Discloses Second Zero-Day to Bypass Patch for Windows EoP Flaw

An anonymous security researcher going by the name of SandboxEscaper today publicly shared a second zero-day exploit that can be used to bypass a recently patched elevation of privilege vulnerability in the Microsoft Windows operating system.

SandboxE… Continue reading Hacker Discloses Second Zero-Day to Bypass Patch for Windows EoP Flaw

Update: Hacker Disclosed 4 New Microsoft Zero-Day Exploits in Last 24 Hours

Less than 24 hours after publicly disclosing an unpatched zero-day vulnerability in Windows 10, the anonymous hacker going by online alias “SandboxEscaper” has now dropped new exploits for two more unpatched Microsoft zero-day vulnerabilities.

The two… Continue reading Update: Hacker Disclosed 4 New Microsoft Zero-Day Exploits in Last 24 Hours

Hacker Discloses New Unpatched Windows Zero-Day Exploit On Twitter

A security researcher with Twitter alias SandboxEscaper today released proof-of-concept (PoC) exploit for a new zero-day vulnerability affecting Microsoft’s Windows operating system.

SandboxEscaper is the same researcher who previously publicly droppe… Continue reading Hacker Discloses New Unpatched Windows Zero-Day Exploit On Twitter

Hacker Discloses New Windows Zero-Day Exploit On Twitter

A security researcher with Twitter alias SandboxEscaper—who two months ago publicly dropped a zero-day exploit for Microsoft Windows Task Scheduler—has yesterday released another proof-of-concept exploit for a new Windows zero-day vulnerability.

Sandb… Continue reading Hacker Discloses New Windows Zero-Day Exploit On Twitter

Researcher Discloses New Zero-Day Affecting All Versions of Windows

A security researcher has publicly disclosed an unpatched zero-day vulnerability in all supported versions of Microsoft Windows operating system (including server editions) after the company failed to patch a responsibly disclosed bug within the 120-da… Continue reading Researcher Discloses New Zero-Day Affecting All Versions of Windows

Hacker Discloses Unpatched Windows Zero-Day Vulnerability (With PoC)

A security researcher has publicly disclosed the details of a previously unknown zero-day vulnerability in the Microsoft’s Windows operating system that could help a local user or malicious program obtain system privileges on the targeted machine.

And… Continue reading Hacker Discloses Unpatched Windows Zero-Day Vulnerability (With PoC)

Wormable Windows Zero Day Reported to Microsoft

Google Project Zero researchers Tavis Ormandy and Natalie Silvanovich found a remotely exploitable Windows vulnerability that Ormandy called he worst in recent memory. Continue reading Wormable Windows Zero Day Reported to Microsoft

Beware of an Unpatched Microsoft Word 0-Day Flaw being Exploited in the Wild

It’s 2017, and opening a simple MS Word file could compromise your system.

Security researchers are warning of a new in-the-wild attack that silently installs malware on fully-patched computers by exploiting a serious — and yet unpatched — zero-day vulnerability in all current versions of Microsoft Office.

The Microsoft Office zero-day attack, uncovered by researchers from security firms

Continue reading Beware of an Unpatched Microsoft Word 0-Day Flaw being Exploited in the Wild