Microsoft under fire for mishandling CVE-2024-38112 zero-day vulnerability disclosure by ZDI

Microsoft under fire for mishandling critical CVE-2024-38112 zero-day vulnerability disclosure by ZDI

Microsoft is facing criticism from security researchers over its handling of a recently patched zero-day vulnerability. The controversy centers around CVE-2024-38112, a flaw in the MSHTML (Trident) rendering engine that was actively exploited by threat actors before being patched in July 2024’s Patch Tuesday update.

Microsoft releases critical July 2024 Patch Tuesday updates, addressing 142 vulnerabilities

Microsoft releases critical July 2024 Patch Tuesday updates, addressing 142 vulnerabilities

The July 2024 Patch Tuesday underscores the ongoing importance of regular security updates in the face of evolving cyber threats. With 142 vulnerabilities addressed, including critical and actively exploited flaws, it’s crucial for users and administrators to apply these updates as soon as possible to maintain the security of their systems and networks.

Microsoft Patch Tuesday security updates June 2024: Critical MSMQ and Wi-Fi driver vulnerabilities fixed

Microsoft Patch Tuesday security updates June 2024: Critical MSMQ and Wi-Fi driver vulnerabilities fixed

Microsoft Patch Tuesday security updates were released for June 2024, addressing a total of 51 security vulnerabilities across its products. This month’s update includes fixes for one critical vulnerability in Microsoft Message Queuing (MSMQ) and another in the Windows Wi-Fi driver, both of which pose significant security risks.