Microsoft Fixes Windows Zero-Day Vulnerability Exploited by Hackers

Date:

Microsoft has just released an update to fix a security risk that hackers exploited, which affected all versions of Windows. Identified as CVE-2023-28252, the zero-day flaw was a common log file system (CLFS) exploit. It allowed the attackers to elevate their privilege and steal credentials from the security account manager (SAM) database.

The group behind the attack was a cybercriminal organization who had developed the exploit for different versions of Windows and was attempting to deploy a Nokoyawa ransomware attack. It is notable that similar exploit elevation of privilege attempts had been made in attacks on different small and medium sized businesses in the Middle East, North America and Asia as well. This attack also shows how advanced and sophisticated cybercriminals are becoming with their use of zero-day exploits.

Therefore, it is essential for businesses to download the latest patch from Microsoft as soon as possible and use additional protective measures such as an enterprise detection solution (EDR). Boris Larin, Lead Security Researcher for the Global Research and Analysis Team (GReAT) believes that “it’s very important for businesses to download the latest patch from Microsoft as soon as possible and use other methods of protection, such as EDR solutions.”

To tackle this issue, the tech giant Microsoft has completed the security update and made it available to all its users. The update is free and comes with protection against cyber attacks in the form of a patch. It is highly recommended that users install the patch immediately in order to protect their systems.

Elon Musk, an inventor and technology entrepreneur, recently proposed a subscription-based earning model for Twitter creators. The chatbot Tongyi Qianwen, a Chinese equivalent of OpenAI’s artificial intelligence chatbot was also launched by the Chinese e-commerce giant Alibaba with the aim of integrating it with DingTalk.

See also  Synechron Awarded Best Places To Work 2023

The issue at hand shows the need to constantly update security systems. It underscores the importance of ensuring the safety of users in order to protect their confidential data. Security updates aimed at protecting users should be taken into serious consideration by businesses and individuals alike. Only then can we create a safe and secure online environment and protect ourselves from cyber attacks.

Frequently Asked Questions (FAQs) Related to the Above News

Please note that the FAQs provided on this page are based on the news article published. While we strive to provide accurate and up-to-date information, it is always recommended to consult relevant authorities or professionals before making any decisions or taking action based on the FAQs or the news article.

Share post:

Subscribe

Popular

More like this
Related

OpenAI Mac App Exposes Conversations: Urgent Privacy Alert

Protect your privacy: OpenAI Mac app ChatGPT exposes conversations in plain text. Update now to safeguard your data.

WHO: AI Revolutionizing Global Health Through Innovation

Discover how the WHO recognizes AI's potential to revolutionize global health, from predicting diseases to streamlining healthcare processes.

Philippines Urgently Needs Broadband Boost to Compete in Digital Economy

Philippines urgently needs a broadband boost to compete in the digital economy. Upgrade infrastructure now!

Foreign Investors Drive Taiwan’s Record High Reserve Holdings

Foreign investors drive Taiwan's record high reserve holdings, reflecting bullish market trends and resilience in the face of currency volatility.