Cybersecurity
The latest Cybersecurity coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2025-21379: Critical DHCP Vulnerability Threatens Windows Systems with Remote Code Execution
CVE-2025-21379: Critical DHCP Vulnerability Exposes Windows Systems Microsoft has issued an urgent security advisory regarding CVE-2025-21379, a critical vulnerability in the Windows DHCP Client...
CVE-2025-21368: Critical Windows Digest Authentication Vulnerability Exposes Systems to Remote Code Execution
CVE-2025-21368: Critical Vulnerability in Windows Digest Authentication Microsoft has issued a critical security alert regarding CVE-2025-21368, a newly discovered vulnerability in Windows Digest...
Azure Network Watcher flaw CVE-2025-21188 grants admin access; Microsoft released fixes February 2025
CVE-2025-21188: Critical Privilege Escalation Vulnerability in Azure Network Watcher Microsoft has disclosed a critical elevation of privilege vulnerability (CVE-2025-21188) affecting Azure Network...
New 'Ghost Server' Attack Abuses Kerberos for Persistent Active Directory Backdoors
A new cybersecurity threat targeting Windows Active Directory environments has emerged, dubbed the 'Ghost Server' attack. This sophisticated attack vector exploits Kerberos delegation to create...
Midnight Blizzard breach: Windows users face new threats from HPE email hack
The recent Hewlett Packard Enterprise (HPE) data breach, attributed to the Russian-backed hacking group Midnight Blizzard (formerly Nobelium), serves as a stark reminder of the evolving cybersecurity...
The Imperative to Upgrade to Windows 11 Before 2025
Introduction As the end of support for Windows 10 approaches on October 14, 2025, users and organizations must consider transitioning to Windows 11 to maintain security, performance, and compliance....
Microsoft Expands Copilot Bug Bounty Program to Strengthen AI Security
Microsoft has announced a significant expansion of its Copilot Bug Bounty Program, offering increased rewards for security researchers who identify vulnerabilities in its AI-powered assistant. This...
February 2025 Patch Tuesday: AI Threat Detection & 78 Critical Fixes
Microsoft's February 2025 Patch Tuesday has arrived, bringing critical security updates and groundbreaking AI-powered security enhancements to Windows users worldwide. This month's release showcases...
Edge’s built-in password monitor catches 80% of breach risks on Windows 11.
Microsoft Edge has evolved into a powerhouse browser with robust security features, especially when it comes to password management on Windows 11. With cyber threats on the rise, understanding how to...
DOGE's 90-Day Azure AI Audit Targets Data Residency and Access Flaws
The integration of artificial intelligence into federal data systems has reached a critical juncture as the Department of Energy's Governance Entity (DOGE) faces mounting scrutiny over its Microsoft...
HPE Data Breach: Cozy Bear Hackers Exploit Office 365 with Sophisticated Cyberattack
Overview of the HPE Data Breach Incident In late 2023, Hewlett Packard Enterprise (HPE), a major global technology provider, disclosed a significant cybersecurity incident involving a data breach...
Critical Microsoft Outlook Vulnerability (CVE-2024-21413): Immediate Patch Required to Prevent Remote Code Execution
Microsoft has issued an urgent security advisory regarding a critical vulnerability in its Outlook email client that could allow attackers to execute malicious code remotely. Designated as...