Live
Microsoft confirms CVE-2025-24054 NTLM attacks after March 11 patch.·MSFT +2.1%Windows 11 April 2025 Update Introduces 'inetpub' Folder: Security Risks and How to Mitigate Them·NVDA +0.2%CVE-2025-24054: Exploitation of Windows NTLM Hash Leak Vulnerability Highlights Urgent Need for Patch Management·GOOGL +1.7%Understanding Microsoft's April 2025 Windows 11 Update: The 'inetpub' Folder and Its Crucial Security Role·AMZN +1.1%Understanding the inetpub Folder in Windows 11: Security Benefits and Hidden Risks·MSFT +2.1%inetpub Folder Auto-Created in April 2025 Update to Block CVE-2025-21204, but Permissions Need Hardening·NVDA +0.2%Critical Security Alert: Update Your Windows 11 24H2 Install Media to Mitigate High-Severity Vulnerability·GOOGL +1.7%Windows April 2025 Update Exposes Critical IIS Vulnerability (CVE-2025-21204)·AMZN +1.1%Microsoft confirms CVE-2025-24054 NTLM attacks after March 11 patch.·MSFT +2.1%Windows 11 April 2025 Update Introduces 'inetpub' Folder: Security Risks and How to Mitigate Them·NVDA +0.2%CVE-2025-24054: Exploitation of Windows NTLM Hash Leak Vulnerability Highlights Urgent Need for Patch Management·GOOGL +1.7%Understanding Microsoft's April 2025 Windows 11 Update: The 'inetpub' Folder and Its Crucial Security Role·AMZN +1.1%Understanding the inetpub Folder in Windows 11: Security Benefits and Hidden Risks·MSFT +2.1%inetpub Folder Auto-Created in April 2025 Update to Block CVE-2025-21204, but Permissions Need Hardening·NVDA +0.2%Critical Security Alert: Update Your Windows 11 24H2 Install Media to Mitigate High-Severity Vulnerability·GOOGL +1.7%Windows April 2025 Update Exposes Critical IIS Vulnerability (CVE-2025-21204)·AMZN +1.1%

Vulnerability

The latest Vulnerability coverage — news, analysis, and updates from the WindowsNews.AI desk.

11 stories in view AI assisted desk updated 10:45 AM
Latest Most Read Breaking
Sort
Active Threat Campaigns · Authentication Flaws

Microsoft confirms CVE-2025-24054 NTLM attacks after March 11 patch.

Overview On March 11, 2025, Microsoft released its Patch Tuesday updates, addressing multiple vulnerabilities across its software suite. Among these, CVE-2025-24054—a Windows NTLM hash disclosure...

Advertisement
File Security · Filesystem Permissions

Understanding the inetpub Folder in Windows 11: Security Benefits and Hidden Risks

For Windows 11 users and IT professionals alike, the operating system's intricate file structure often hides both powerful tools and potential risks. One such element, the inetpub folder, has...

SE Security Desk·65w ago
Cve-2025-21204 · Directory Junctions

inetpub Folder Auto-Created in April 2025 Update to Block CVE-2025-21204, but Permissions Need Hardening

Introduction With the April 2025 cumulative update (notably KB5055523 for Windows 11 24H2 and corresponding updates for Windows 10), many users have noticed the unexpected creation of the...

SE Security Desk·65w ago
Cyber Hygiene · Cyber Threats

Critical Security Alert: Update Your Windows 11 24H2 Install Media to Mitigate High-Severity Vulnerability

Overview The Pakistan Telecommunication Authority (PTA) has issued an urgent cybersecurity advisory concerning a high-severity vulnerability discovered in Microsoft's Windows 11 version 24H2. This...

SE Security Desk·65w ago
Cve-2025-21204 · Directory Hijacking

Windows April 2025 Update Exposes Critical IIS Vulnerability (CVE-2025-21204)

The April 2025 update for Windows 10 and 11 systems has unexpectedly surfaced dormant IIS components, thrusting the typically hidden inetpub directory into the spotlight and exposing attack vectors...

SE Security Desk·65w ago
Cyber Hygiene · Cyber Threats

PTA Warns: Outdated Windows 11 24H2 Installation Media Poses Critical Security Risks

A newly issued security advisory from the Pakistan Telecommunication Authority (PTA) has ignited urgent discussions among IT professionals worldwide, revealing that outdated Windows 11 installation...

SE Security Desk·65w ago
Active Directory · Ad Core Services

Windows Server 2025 DCs load wrong firewall profile after reboot, Microsoft offers workaround

Overview Microsoft's latest server operating system, Windows Server 2025, has encountered a significant issue affecting domain controllers (DCs). After a system restart, these servers may fail to...

SE Security Desk·65w ago
Advanced Persistent Threats · Apple Zero-day

Exploitation of Windows NTLM Vulnerability CVE-2025-24054 in Widespread Cyberattacks

Overview In March 2025, Microsoft released a security update addressing a critical vulnerability in the Windows NT LAN Manager (NTLM) authentication protocol, identified as CVE-2025-24054. Despite...

SE Security Desk·65w ago