Tag

Security Update

All articles tagged with #security update

Critical UniFi Flaws Allow Full System Takeover, Patch Now
cybersecurity21 days ago

Critical UniFi Flaws Allow Full System Takeover, Patch Now

Ubiquiti disclosed two critical-to-high vulnerabilities in UniFi Network Application: CVE-2026-22557, a path-traversal flaw that can allow unauthenticated attackers to seize full control of the underlying host, and CVE-2026-22558, an authenticated NoSQL injection enabling privilege escalation. Affected versions include UniFi Network App 10.1.85 and earlier, 10.2.93 and earlier, and UniFi Express Network App 9.0.114 and earlier. Patches are available: official 10.1.89+ (or RC 10.2.97+; UX 4.0.13+) bundling Network App 9.0.118+. Given the CVSS 10 rating for CVE-2026-22557, patch immediately and implement network segmentation/firewall controls for the UniFi management interface.

Galaxy S25 gets global February 2026 security patch as S26 debuts
technology1 month ago

Galaxy S25 gets global February 2026 security patch as S26 debuts

Samsung has begun a global rollout of the February 2026 security patch for the Galaxy S25 lineup (S25, S25+, S25 Ultra, S25 FE, S25 Edge), with builds ending in BZB5 or AZB6; the update started in Korea and is expanding across Asia and Europe via Settings > Software update. This patch may be the last security update before Samsung begins rolling out One UI 8.5, though a release date for 8.5 remains unclear.

Windows 11 Patch KB5077181 Triggers Infinite Restart on Some Devices
technology1 month ago

Windows 11 Patch KB5077181 Triggers Infinite Restart on Some Devices

Microsoft's February 10, 2026 security update KB5077181 for Windows 11 versions 24H2 and 25H2 appears to trigger boot loops on affected devices, forcing multiple restarts; while it patches 58 vulnerabilities (including six zero-days) and ships new Secure Boot certificates to improve boot integrity, users report login failures with System Event Notification Service errors, DHCP connectivity losses, and install errors such as 0x800f0983/0x800f0991, prompting uninstall guidance via Control Panel or Windows Recovery Environment and a suggested SFC scan; enterprises should test via WSUS and monitor health while Microsoft has not publicly acknowledged the issues.

Microsoft patches Windows 11 shutdown and remote-login bugs with emergency out-of-band fix
computing2 months ago

Microsoft patches Windows 11 shutdown and remote-login bugs with emergency out-of-band fix

Microsoft issued an out-of-band emergency patch for the January 2026 Windows security update that fixes a shutdown/hibernate bug on some Windows 11 PCs and restores remote login via credential prompts on Windows 10/11 devices; the fix also addresses Secure Launch startup-security issues. Some users still report lingering problems like blank screens or Outlook Classic crashes, and Microsoft noted related fixes from October 2025 for Windows Recovery Environment. Windows 10 users can continue with Extended Security Updates if they’re not ready to upgrade.

Windows 11 Shutdown Bug Emerges After January Patch
cyber-security-news2 months ago

Windows 11 Shutdown Bug Emerges After January Patch

Microsoft’s January 13, 2026 security update KB5073455 for Windows 11 23H2 (OS Build 22621.6491) triggers a shutdown bug on Enterprise and IoT editions, causing devices to reboot instead of powering down or entering hibernation due to interference with Secure Launch (a virtualization-based security feature). IT teams report power-management issues and potential data loss; a workaround is to force shutdown via shutdown /s /t 0, while a fix is promised in a future update. Disabling Secure Launch via Group Policy can restore normal shutdown but weakens boot integrity.

Windows 10 security-only KB5073724 update patches three zero-days and Secure Boot certs
technology2 months ago

Windows 10 security-only KB5073724 update patches three zero-days and Secure Boot certs

Microsoft released the Windows 10 KB5073724 security update, addressing 114 vulnerabilities including three zero-days, and updating Secure Boot certificates. The update also removes certain Agere modem drivers and includes a WinSqlite3.dll fix. It targets devices in the ESU program or LTSC and does not add new features, raising builds to 19045.6809 (19044.6809 for LTSC 2021). Note that affected modem hardware will stop working due to removed drivers; Microsoft reports no known issues at this time.

Microsoft and Google Warn of Active WSUS and Windows Service Exploits
technology5 months ago

Microsoft and Google Warn of Active WSUS and Windows Service Exploits

A security update for Windows Server Update Service (WSUS) addressing a critical vulnerability has inadvertently disabled hotpatching on some Windows Server 2025 devices. Microsoft has halted the update for hotpatch-enrolled systems and released a new patch (KB5070893) that fixes the vulnerability without disrupting hotpatching. Administrators are advised to pause updates, install the new patch, and monitor their systems for continued security and stability.

Microsoft Releases Hotfix for Windows 11 October Update Bugs
technology5 months ago

Microsoft Releases Hotfix for Windows 11 October Update Bugs

A mandatory Windows 11 security update (KB5066835) has caused significant issues for some users, including disabling mice, keyboards, and network connections. Microsoft is working on a hotfix, which may take several days, and recommends checking for updates and rebooting to facilitate the rollback. Temporary workarounds involving registry modifications are also suggested.