Microsoft and Intel released updated mitigations of MMIO security flaw last month for several Windows 10, Windows 11 and Server versions. For the remaining, the updated files are now available.
Privilege escalation RSS
Microsoft has issued a reminder today about the third phase security hardening changes deployment for Windows Server Kerberos protocol. These changes are meant to patch a major security flaw.
AMD has advised users to update Ryzen Master as it was vulnerable to a high severity flaw. This follows the earlier report today where the company's CPUs have begun exhibiting fTPM stutters on Linux.
HP has warned that it has discovered a new high severity privilege escalation vulnerability inside its own Support Assistant software utility. The company has also issued a fix for the security flaw.
The Zoom installer for Apple macOS can potentially grant elevated security privileges to attackers owing to a flaw in the setup file. Zoom did release a patch, but the bug is still exploitable.
Microsoft has patched a major issue in Azure Service Fabric affecting Linux clusters on the cloud. The service is the backbone of many Microsoft projects including Cortana/Bing and Skype for Business.
On Day One of the annual Pwn2Own ethical hacking event, Microsoft's Windows 11 as well as Teams was successfully hacked every time. However, on Day Two, not every attempt ended up in success.
Latest Microsoft Edge 99 and Chrome 99 stable releases bring important fixes for several security vulnerabilities. The security flaws include privilege escalation, use after free, among others.
Microsoft has made changes to Windows Defender's Exclusions as the section is no longer visible to users who don't have administrator rights, whereas previously, it was visible to everyone.
Intel has published an updated security advisory for a couple of new LPE bugs that were discovered. A lot of the newer CPUs, except Alder Lake, are vulnerable too. Firmware patches are rolling out.
Razer has confirmed that it is working on patching an easily exploitable security issue which allows a local attacker to gain admin privileges to your system using just a Razer mouse or a dongle.
Google Project Zero has disclosed yet another Windows vulnerability that can lead to elevation of privilege. Microsoft had initially stated that it would not resolve it, but is now working on a fix.