Windows Security
The latest Windows Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
July 2026 Windows Patch Fixes QWAVE Flaw That Could Escalate Local Attacks to SYSTEM
On July 14, 2026, Microsoft released its monthly security updates, and among the hundreds of fixes was a patch for CVE-2026-54989—a privilege escalation vulnerability lurking in the Quality Windows...
Microsoft's 570-Fix Patch Tuesday: Two Zero-Days Exploited, BitLocker Bypass Disclosed
On July 14, Microsoft unloaded a record-breaking 570 security fixes across its product portfolio — the largest Patch Tuesday in the company’s history. Two of the vulnerabilities are zero-days...
Age of Empires II: Definitive Edition Update Closes Remote Code Execution Hole (CVE-2026-50663)
Microsoft has shipped a critical security update for Age of Empires II: Definitive Edition to address a remote code execution vulnerability that could allow attackers to compromise a player’s...
ChatGPT Now Controls Windows Apps and Files: The New Security Reality Check
OpenAI dropped a major update to its Windows desktop app on July 9, unleashing ChatGPT Work—an AI agent that can reach into your installed applications, browser, and cloud services to execute...
Microsoft Patches Windows App Store Privilege Escalation Bug Affecting All Supported Versions
Microsoft's July 14, 2026 security updates close a local privilege escalation hole in the Windows App Store component that could hand attackers full system control if they already have a foot in the...
Immediate Action Required: Windows TCP/IP Data Leak Fixed in July 2026 Update (CVE-2026-49177)
Microsoft’s July 14, 2026 security release shipped with a fix for CVE-2026-49177, an information disclosure vulnerability in the Windows TCP/IP stack that could allow an attacker with network...
Microsoft Seals DNS Tampering Flaw in July Cumulative Update Rush
Microsoft delivered a security update on July 14, 2026, that plugs a local tampering vulnerability in the Windows DNS Client tracked as CVE-2026-49174. The Important-rated flaw, with a CVSS score of...
Microsoft’s July 2026 Patch Tuesday Slips In a Kernel Fix You Shouldn’t Overlook
Microsoft pushed out a sweeping set of security updates on July 14, 2026, and tucked inside the massive release is a fix for a Windows kernel bug that could hand an attacker the keys to your entire...
Windows FTP Flaw Earns a 9.8 CVSS Score – Microsoft Calls It ‘Important.’ Here’s Your Patch Plan.
On July 14, 2026, Microsoft patched a vulnerability in the Windows FTP Service that could allow an attacker to remotely execute code on a server with no authentication. The flaw, dubbed...
July 2026 Windows Update Seals DNS Client Privilege Escalation Hole—Check Your Build Now
Microsoft’s July 14, 2026 Patch Tuesday delivered a fix for CVE-2026-49175, a local privilege-escalation vulnerability in the Windows DNS Client that earned a CVSS 3.1 score of 7.8 and an Important...
Microsoft Patches WalletService Privilege Escalation Flaw (CVE-2026-49176) in July 14 Update
Microsoft shipped a fix for an elevation-of-privilege vulnerability in Windows WalletService as part of its July 14, 2026 Patch Tuesday release. The bug, tracked as CVE-2026-49176, carries an...
Microsoft Patches Windows Speech Runtime Flaw That Could Elevate User Privileges
On July 14, 2026, Microsoft released a security update fixing CVE-2026-49171, a local privilege-escalation vulnerability in the Windows Speech Runtime. The flaw could allow an attacker who already...