Enterprise Security
The latest Enterprise Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
Zero-click EchoLeak flaw in Copilot allows data theft via poisoned prompts
A newly discovered vulnerability in Microsoft Copilot, dubbed EchoLeak (CVE-2025-32711), has exposed a critical flaw in AI-powered productivity tools, allowing attackers to exfiltrate sensitive data...
Microsoft patches critical Task Scheduler flaw allowing SYSTEM-level privilege escalation
In early June, cybersecurity professionals and IT administrators were confronted with a newly disclosed vulnerability in a core component of the Windows operating system that has raised significant...
Windows Server 2025 Domain Controllers: Fixing Firewall Profile Bugs for Reliable Networks
Windows Server 2025 has introduced significant improvements in domain controller reliability, but administrators recently faced a critical challenge: firewall profile bugs causing unexpected network...
April 2025 Windows Server Update Causes Kerberos Auth Failures: Fixes Inside
When Microsoft's monthly security updates promise stronger defenses, IT professionals and organizations worldwide often breathe a sigh of relief. Yet, as the April 2025 security updates reached...
Emergency Microsoft Patch Released for Critical Windows RDS Zero-Day CVE-2025-32710
A critical vulnerability in Windows Remote Desktop Services (RDS), designated as CVE-2025-32710, has sent shockwaves through the cybersecurity community. This flaw, rated 9.8 on the CVSS severity...
78 flaws fixed, 3 zero-days exploited: June Patch Tuesday urges immediate action
Microsoft's June 2025 Patch Tuesday has arrived with a mix of urgent fixes and sobering reminders about the evolving threat landscape. This month's security update addresses 78 vulnerabilities across...
Critical WebDAV & SMB flaws patched June 2025—exploits active, CVSS 9.8
Microsoft’s June 2025 Patch Tuesday addresses two critical vulnerabilities—CVE-2025-XXXX in Windows WebDAV and CVE-2025-YYYY in SMB—that could allow remote code execution and privilege...
June 2025 Patch Tuesday fixes 78 flaws, 3 zero-days exploited in legacy SMB and WebDAV
June’s Patch Tuesday has become a pivotal moment for Windows system administrators, threat researchers, and IT professionals alike. Microsoft’s June 2025 security update underlines why: it...
June Patch Tuesday: Two Active Zero-Days, Critical Fixes for MSMQ, Edge & Legacy Risks
Every month, Microsoft’s Patch Tuesday looms as a critical date on the IT administrator’s calendar, and this cycle is no exception. Microsoft has sounded the alarm on 66 vulnerabilities, with two...
Outlook to Block Two File Types from 2025 as Exploits Like Follina Rise
Microsoft is taking another decisive step in its ongoing battle against cyber threats by announcing that Outlook will block 'library-ms' and 'search-ms' file attachments starting in 2025. This move...
Microsoft June 2025 Patch Tuesday: 75 Flaws, 6 Active Zero-Days, Emergency Fixes
Microsoft's June 2025 Patch Tuesday has arrived with one of the most urgent security update packages in recent memory, putting IT administrators worldwide on high alert. The update addresses 75...
Windows 11 June 2025 Update: Key Security, AI, and Performance Upgrades
Microsoft's June 2025 update for Windows 11 (KB5060842) marks a significant milestone in the operating system's evolution, delivering OS Build 26100.4349 for version 24H2. This comprehensive update...