Get the latest tech news

Windows Update Zero-Day Being Exploited To Undo Security Fixes


wiredmikey shares a report from SecurityWeek: Microsoft on Tuesday raised an alarm for in-the-wild exploitation of a critical flaw in Windows Update, warning that attackers are rolling back security fixes on certain versions of its flagship operating system. The Windows flaw, tagged as CVE-2024-4349...

wiredmikey shares a report from SecurityWeek: Microsoft on Tuesday raised an alarm for in-the-wild exploitation of a critical flaw in Windows Update, warning that attackers are rolling back security fixes on certain versions of its flagship operating system. The Windows flaw, tagged as CVE-2024-43491 and marked as actively exploited, is rated critical and carries a CVSS severity score of 9.8/10. Redmond's documentation of the bug suggests a downgrade-type attack similar to the'Windows Downdate' issue discussed at this year's Black Hat conference.

Get the Android app

Or read this on Slashdot

Read more on:

Photo of Windows

Windows

Photo of Day

Day

Photo of undo security fixes

undo security fixes

Related news:

News photo

Malaysia's Plan To Block Overseas DNS Dies After a Day

News photo

Windows 10 KB5043064 update released with 6 fixes, security updates

News photo

Microsoft fixes Windows Smart App Control zero-day exploited since 2018