Tag

#Windows

18 published stories tagged with Windows.

highExploited VulnerabilitiesAug 12, 2026·4 min read

Lazarus Group exploits Windows kernel vulnerability to escalate privileges via fake job offers

Lazarus Group is exploiting a Windows kernel vulnerability to escalate privileges and deploy backdoors via fake job offers.

highExploited VulnerabilitiesAug 11, 2026·2 min read

Critical Windows kernel flaw exploitation drives massive Microsoft security patch release

Microsoft has released a massive update addressing 398 security flaws, including one critical vulnerability currently being exploited in the wild.

highExploited VulnerabilitiesAug 11, 2026·3 min read

Lazarus group exploits zero-day vulnerability for kernel-mode rootkit deployment and system privilege escalation

Microsoft's August 2026 Patch Tuesday addresses 400 vulnerabilities, including one actively exploited zero-day used by the Lazarus group to deploy kernel-mode rootkits.

highDefensive GuidanceJul 23, 2026·3 min read

Unauthorized action execution possible via deserialization flaw in Johnson Controls Victor software

A high-severity deserialization flaw has been identified in Johnson Controls' victor software running on Windows.

highExploited VulnerabilitiesJul 21, 2026·3 min read

Non-admin users can escalate privileges to administrator via Windows User Profile Service flaw

A zero-day vulnerability in the Windows User Profile Service, dubbed LegacyHive, allows non-admin users to escalate privileges to administrative levels.

highExploited VulnerabilitiesJul 15, 2026·2 min read

Local users can load administrative hives via Windows User Profile Service zero-day

A new zero-day vulnerability in the Windows User Profile Service allows local users to load administrative user hives.

highExploited VulnerabilitiesJul 15, 2026·3 min read

Unauthenticated attackers can hijack Zoom accounts through critical vulnerability in Windows software

🚨 An unauthenticated attacker can hijack accounts via network access due to a critical flaw in Zoom's Windows software. This affects the standard Workplace client, VDI clients, and the Meeting SDK.

highExploited VulnerabilitiesJul 14, 2026·2 min read

Active exploitation of two zero-day flaws drives massive Microsoft security update targeting 622 vulnerabilities

Microsoft has released a massive update addressing 622 vulnerabilities, including two zero-days currently being exploited in the wild.

highExploited VulnerabilitiesJul 14, 2026·2 min read

Three zero-day vulnerabilities exploited in the wild require immediate Microsoft security updates

Microsoft's July 2026 Patch Tuesday addresses a record 570 flaws, including three zero-day vulnerabilities.

highVulnerabilityMay 8, 2026·4 min read

Brief: Acer PredatorSense Named Pipe Misconfiguration Enables SYSTEM Privilege Escalation

Acer PredatorSense versions 3.00.3136 through 3.00.3196 contain a local privilege escalation vulnerability caused by a misconfigured Windows named pipe.

highVulnerabilityMay 8, 2026·4 min read

Defender Guidance: Acer PredatorSense Named Pipe Misconfiguration Enables SYSTEM Privilege Escalation

Acer PredatorSense versions 3.00.3136 through 3.00.3196 contain a local privilege escalation vulnerability caused by a misconfigured Windows named pipe.

highVulnerabilityMay 8, 2026·4 min read

Detection Notes: Acer PredatorSense Named Pipe Misconfiguration Enables SYSTEM Privilege Escalation

Acer PredatorSense versions 3.00.3136 through 3.00.3196 contain a local privilege escalation vulnerability caused by a misconfigured Windows named pipe.

highVulnerabilityMay 8, 2026·4 min read

Risk Brief: Acer PredatorSense Named Pipe Misconfiguration Enables SYSTEM Privilege Escalation

Acer PredatorSense versions 3.00.3136 through 3.00.3196 contain a local privilege escalation vulnerability caused by a misconfigured Windows named pipe.

highVulnerabilityMay 8, 2026·4 min read

Brief: NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\SYSTEM through registry manipulation.

highVulnerabilityMay 8, 2026·4 min read

Defender Guidance: NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\SYSTEM through registry manipulation.

highVulnerabilityMay 8, 2026·4 min read

Detection Notes: NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\SYSTEM through registry manipulation.

highVulnerabilityMay 8, 2026·4 min read

Risk Brief: NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\SYSTEM through registry manipulation.

highVulnerabilityMay 8, 2026·4 min read

NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\\SYSTEM through registry manipulation.