Patch Tuesday Surges, TV Espionage, and a Wave of Identity Breaches Dominate This Week in Security

This week’s security digest highlights a record Patch Tuesday with about 1,000 fixes, including two zero-days actively exploited for privilege escalation and a near-10 CVSS remote code execution flaw in Windows, plus alarming reports on LG smart TVs collecting telemetry and ad data, the reappearance of the Shai-Halud worm in NPM, a continuing Boston Scientific ransomware impact, Magento/Adobe Commerce vulnerabilities being exploited in the wild, Microsoft moving to block emails from unpatched Exchange servers, Nimbus Manticore phishing campaigns, and a massive 150-million-driver-license data breach tied to IDScan, with the American Meteor Society briefly knocked offline by ransomware.
- This Week In Security: It’s Patch Tuesday Again, TVs Spying, Supply Chain Worms Return, Prolonged Hack Impacts, Stolen IDs Hackaday
- Why this month’s Microsoft patch release is a doozy Ars Technica
- Microsoft Plugs Nearly 1,000 Security Holes Krebs on Security
- Microsoft Patches a Record 974 Security Flaws in Biggest Update Ever extremetech.com
- Windows 11’s new update finally fixes its biggest taskbar complaint PCWorld
Reading Insights
0
6
20 min
vs 21 min read
98%
4,175 → 97 words
Want the full story? Read the original article
Read on Hackaday