Windows Server
Everything filed under microsoft in our cybersecurity coverage, the 18 reports filed on it so far.

Windows 11 KB5124010 update crashes apps using AC-3 audio
Microsoft confirms the optional September 2026 KB5124010 preview update for Windows 11 causes crashes in some games and applications that use AC-3...

Kiteworks issues global server shutdown advisory
Kiteworks advised customers worldwide to shut down servers for a six-hour window on Saturday, September 26, based on credible threat intelligence.

F5 Patches Critical BIG-IP APM Zero-Day Exploited for RCE
F5 has released hotfixes for a critical zero-day vulnerability, CVE-2026-94127, in BIG-IP APM. The flaw, a heap-based buffer overflow with a CVSS...

Check Point Zero-Day Exploited in Targeted July Attacks
Check Point has disclosed that a critical zero-day vulnerability in its Security Management Server was exploited in targeted attacks in July.

BlueMoon Exploit Kit Chains Chrome, Windows Zero-Days
A new exploit kit called BlueMoon, which chains three recent zero-day vulnerabilities in Chrome and Windows, has been rapidly adopted by multiple...

APT31 and Three Spy Groups Deploy BlueMoon Chrome-Windows Exploit Kit
Four espionage groups, including APT31, used the new BlueMoon exploit kit in late August and early September 2026.

Microsoft Patches Record 974 Flaws, Two Exploited Zero-Days
Microsoft's September 2026 Patch Tuesday addressed a record 974 vulnerabilities, including two Windows zero-days under active exploitation. The U.S.

Stacklok releases open-source ToolHive for secure MCP server
Stacklok has released ToolHive, an open-source platform for securely running Model Context Protocol servers inside isolated containers.

REVSTEALER Leaves Four Modules to Disable Windows Security
Elastic Security Labs has identified four new programs linked to the REVSTEALER infostealer that persist after the main malware deletes itself.

BraZetsu Malware Fuels Criminal Access Marketplace
Group-IB researchers detail the BraZetsu malware framework, used by the Exilware group to compromise Windows hosts and sell access on an underground...

Silver Fox Campaign Cripples Windows Security
A Chinese threat group dubbed Silver Fox is running a malware campaign using counterfeit software download sites to deliver malicious installers.

CISA Advisory Critical Vulnerability CVE-2026-44772
Q2 2026 saw unprecedented CVE registrations driven by AI adoption, with critical vulnerabilities spiking and exploits for unpatched flaws published...

CDN Tsunami Attack Abuses HTTP/3 Translation for Up to 350x DoS Amplification
Cybersecurity researchers have disclosed two denial-of-service (DoS) attacks that exploit how major content delivery networks (CDNs) convert...

New Cryptographic Context Injection Attack Puts Grok Chat Data at Risk
Adversa AI discloses a new attack technique that can cause xAI's Grok chatbot to send user data to an attacker-controlled server.

Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets
Cybersecurity researchers have discovered a new typosquatting campaign targeting RubyGems users with a Windows-based information stealer. The...

Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
Microsoft has released its monthly security updates, addressing 398 flaws, including a Windows driver zero-day under active attack.

Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from...

Lazarus Group Exploits Windows Zero-Day Vulnerability to Gain SYSTEM Access and Deploy Backdoor
The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting...