Windows Security
The latest Windows Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
SEBI warns: Boss Scam now hijacks Windows PCs to send payment orders from executives' own WhatsApp
India’s securities regulator, the Securities and Exchange Board of India (SEBI), issued an urgent advisory on July 17 after a sophisticated fraud campaign began targeting company executives with...
Microsoft Opens AI-Powered Bug Hunting to All: MDASH Vulnerability Scanner Hits Public Preview
Microsoft has quietly launched a public preview of its MDASH vulnerability-scanning technology, putting AI-powered bug hunting into the hands of security teams via the Defender command-line interface...
Unpatched Windows Zero-Day Lets Standard Users Hijack Admin Registry Hives
A newly public zero-day vulnerability in the Windows User Profile Service (ProfSvc) allows a standard user account to load another user’s registry hive—including an administrator’s—without...
Qilin vs. The Gentlemen: How a RaaS Rivalry Is Reshaping Windows Security Priorities
Ransomware attacks through the first half of 2026 hit a volume 20% higher than the same period last year, even as the number of incidents dipped slightly from the first quarter to the second. The...
ClickFix Malware Campaigns Use Fake Verification Prompts to Steal Browser Sessions and Cloud Data
Microsoft’s security team on July 16 revealed two ongoing ACR Stealer campaigns that have been tricking users into pasting malicious commands as part of fake CAPTCHA or browser-repair prompts. The...
Microsoft Reveals New RDP Information-Disclosure Vulnerability, But Vital Details Are MIA
Microsoft has confirmed a fresh information disclosure bug in Windows Remote Desktop Protocol—the kind that could let attackers siphon off sensitive data—but two days after its July 2026 Patch...
Grok Build Sent Entire Git Repos to the Cloud — Here’s How to Protect Your Code Now
On July 13, SpaceXAI flipped a remote switch that immediately halted Grok Build’s quiet upload of entire Git repositories to its cloud servers. Independent testing had revealed that version 0.2.93...
New Windows Bind Link Tricks Let Attackers Turn EDR Tools Blind After Compromise
On July 16, 2026, security researchers at Bitdefender disclosed three techniques that weaponize a little-known Windows filesystem feature called bind links to blind endpoint detection and response...
July 2026 Patch Tuesday: Urgent Fix for Windows NAT Spoofing Flaw—Update Windows 11 and Server Immediately
Microsoft’s July 14, 2026 security update batch closes a high-severity Windows Network Address Translation (NAT) spoofing vulnerability that could let an attacker on the same network impersonate...
Microsoft Fixes Windows Boot Loader Flaw That Could Weaken Secure Boot Defenses
Microsoft shipped its July 14, 2026 security updates to close a hole in the Windows Boot Loader that could let a well-placed attacker bypass security checks before the operating system loads. The...
Patch Now: Microsoft Fixes High-Risk Privilege Escalation Flaw in Windows Offline Files
Microsoft’s July 2026 security patches landed Tuesday with an urgent fix for a vulnerability that can hand an attacker full control over a Windows machine once they’re logged in. The flaw,...
Windows July Updates Seal Win32K Hole That Could Hand Attackers SYSTEM Access
Microsoft’s July 14, 2026 Patch Tuesday fixes CVE-2026-58632, a high-severity elevation-of-privilege flaw in the Windows Win32 Kernel Subsystem that could allow a locally authenticated attacker to...