Windows Security News

Security news specific to Microsoft Windows — vulnerabilities, exploitation and patches affecting Windows systems.

As the most widely deployed desktop and enterprise operating system, Windows is a constant target for both criminal and state-linked attackers. This feed tracks Windows-specific CVEs, in-the-wild exploitation and Microsoft's Patch Tuesday and out-of-band fixes as they are reported. It overlaps heavily with the ransomware and exploit feeds, since Windows endpoints remain the most common initial-access target.

Recent Windows items

DeathShotXD/0xM0nCrush: Kernel-mode process terminator using a signed BYOVD driver. Works on all Windows 10/11. No offsets, no PDB. Rust. https://github.com/DeathShotXD/0xM0nCrush 🎖
@malwr · Sep 6, 2026
CVE-2026-54100 A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. WMCO establishes SSH connections to Windows worker nodes without verifying the r…
@cveNotify · Sep 5, 2026
CVE-2026-54099 A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. The WICD CSR auto-approver validates that a Certificate Signing Request contains…
@cveNotify · Sep 5, 2026
CVE-2026-76139 A flaw was found in acm-operator-bundle. The build process for this component downloads and runs a script from a remote source without verifying its authenticity or integrity. This scri…
@cveNotify · Sep 5, 2026
CVE-2026-76139 A flaw was found in acm-operator-bundle. The build process for this component downloads and runs a script from a remote source without verifying its authenticity or integrity. This scri…
@cveNotify · Sep 5, 2026
Attackers are exploiting a PaperCut authentication bypass and RCE chain against schools and universities in the U.S. and Europe.The attacks enable credential theft, privileged account creation, regist…
@thehackernews · Sep 5, 2026
CVE-2026-83711 Authorization bypass through user-controlled key in Microsoft Azure Active Directory B2C allows an unauthorized attacker to elevate privileges over a network. 🎖
@cveNotify · Sep 5, 2026
CVE-2026-85390 Checkmate through 3.11.0 omits the isAllowed role guard middleware on maintenance-window, notification, and check-deletion routes, allowing read-only users to perform administrative act…
@cveNotify · Sep 5, 2026
CVE-2026-85090 FreeRDP before 3.31.0 contains a heap out-of-bounds read vulnerability in the general_ChromaV1ToYUV444 function during AVC444 chroma plane reconstruction. A malicious RDP server can cra…
@cveNotify · Sep 5, 2026
CVE-2026-75135 UpSignOn for Windows before 7.19.0 contains a sensitive data exposure vulnerability that allows local attackers to recover the master password and decrypt vault contents by reading a re…
@cveNotify · Sep 5, 2026
CVE-2026-82635 Pake before 3.13.1 joins the JavaScript-supplied filename for the download_file Tauri command onto the user's Downloads directory with no sanitization. A filename containing path traver…
@cveNotify · Sep 4, 2026
CVE-2026-64388 In the Linux kernel, the following vulnerability has been resolved:smb/client: fix chown/chgrp with SMB3 POSIX ExtensionsOwnership (chown) and group (chgrp) modifications were being ign…
@cveNotify · Sep 4, 2026
CVE-2026-64387 In the Linux kernel, the following vulnerability has been resolved:smb: client: fix query directory replay double-freeA response-bearing attempt can return a replayable error and free i…
@cveNotify · Sep 4, 2026
CVE-2026-64386 In the Linux kernel, the following vulnerability has been resolved:smb: client: fix query_info() replay double-freeA response-bearing attempt can return a replayable error and free itsr…
@cveNotify · Sep 4, 2026
CVE-2026-64385 In the Linux kernel, the following vulnerability has been resolved:smb: client: fix double-free in SMB2_ioctl() replayA response-bearing attempt can return a replayable error and free i…
@cveNotify · Sep 4, 2026
CVE-2026-64384 In the Linux kernel, the following vulnerability has been resolved:smb: client: fix change notify replay double-freeA response-bearing attempt can return a replayable error and free its…
@cveNotify · Sep 4, 2026
CVE-2026-64383 In the Linux kernel, the following vulnerability has been resolved:smb: client: fix double-free in SMB2_flush() replaySMB2_flush() keeps its response buffer bookkeeping across replayatt…
@cveNotify · Sep 4, 2026
CVE-2026-64382 In the Linux kernel, the following vulnerability has been resolved:smb: client: fix double-free in SMB2_open() replayA response-bearing attempt can return a replayable error and free it…
@cveNotify · Sep 4, 2026
CVE-2026-80119 PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain an information disclosure vulnerability in DirectIo64.…
@cveNotify · Sep 4, 2026
CVE-2026-80119 PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain an information disclosure vulnerability in DirectIo64.…
@cveNotify · Sep 4, 2026
CVE-2026-80112 PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain an improper access control vulnerability in the Direct…
@cveNotify · Sep 4, 2026
CVE-2026-78604 Incorrect Permission Assignment for Critical Resource (CWE-732) in Elastic Agent can lead to local privilege escalation via Replace Binaries (CAPEC-642). On Windows systems where Elasti…
@cveNotify · Sep 4, 2026
CVE-2026-64394 In the Linux kernel, the following vulnerability has been resolved:ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SET_INFO SECURITYcommit cc57232cae23 ("ksmbd: fix FSCTL permission by…
@cveNotify · Sep 4, 2026
CVE-2026-64402 In the Linux kernel, the following vulnerability has been resolved:coresight: ultrasoc-smb: Fix OOB write in smb_sync_perf_buffer()When the SMB sink is used as a perf AUX sink, smb_upda…
@cveNotify · Sep 4, 2026
CVE-2026-64401 In the Linux kernel, the following vulnerability has been resolved:smb: client: resolve SWN tcon from live registrationscifs_swn_notify() looks up a witness registration by id undercifs…
@cveNotify · Sep 4, 2026
CVE-2026-64398 In the Linux kernel, the following vulnerability has been resolved:ksmbd: add a permission check for FSCTL_SET_ZERO_DATAFSCTL_SET_ZERO_DATA in smb2_ioctl() destroys file data viaksmbd_v…
@cveNotify · Sep 4, 2026
CVE-2026-64396 In the Linux kernel, the following vulnerability has been resolved:ksmbd: fix UAF of struct file_lock in SMB2_LOCK deferred-lock cancellationWhen a blocking byte-range lock request is d…
@cveNotify · Sep 4, 2026
CVE-2026-85456 MOOS-IvP through 24.8.1 fails to properly validate variable names extracted from alog files in the SplitHandler, allowing attackers to write files outside the split directory. Attackers…
@cveNotify · Sep 4, 2026
CrowdStrike Falcon Zero-Day Lets Attackers Escalate Privileges on Windows Systems https://gbhackers.com/crowdstrike-falcon-zero-day/
@PentestingNews · Sep 4, 2026
CVE-2026-85456 MOOS-IvP through 24.8.1 fails to properly validate variable names extracted from alog files in the SplitHandler, allowing attackers to write files outside the split directory. Attackers…
@cveNotify · Sep 3, 2026

Other topics

CVE
Recent CVE identifiers and vulnerability disclosures aggregated from security feeds — new CVE IDs, published advisories, and the vendors and products they affect.
Ransomware
Ransomware attacks, extortion group activity, victim disclosures and decryptor releases tracked as they are reported.
Phishing
Phishing campaigns, credential-harvesting kits, and social-engineering techniques used to compromise users and organizations.
Zero-Day
Zero-day vulnerabilities being actively exploited before a patch exists, and the fixes that follow.
Data Breach
Confirmed and reported data breaches — what was exposed, which organizations were affected, and how the incident came to light.
Exploit
Public exploit code, proof-of-concept releases, and technical exploitation write-ups for known vulnerabilities.