Articles from February 2026
Browse all Windows news articles published in February 2026
LJMU Tests Whether AI Can Reclaim 4.5 Hours a Week—with 134 Staff Enrolled
Liverpool John Moores University has enrolled 134 staff in an AI Academy run with training provider Multiverse, kicking off an ambitious push to embed generative AI into everyday work. The goal:...
Malicious .keras Models Can Steal Your Files and Cloud Credentials Despite Keras Safe Mode
A seemingly innocuous machine learning file can now be used to steal your SSH keys, cloud credentials, and other sensitive data—all without triggering any alarms. Microsoft has disclosed a critical...
Google's Protobuf Java Parsing Flaw Can Paralyze Services — Here's How to Fix CVE-2022-3510
In December 2022, Google disclosed a parsing inefficiency in its widely used Protocol Buffers (protobuf) Java library, tracked as CVE-2022-3510, that allows remote attackers to freeze Java services...
A Single Malicious URL Can Freeze Your Node.js Server — Here’s the Urgent Patch for CVE-2022-24999
The widely used qs library — a Node.js querystring parser — contained a prototype pollution flaw that allowed attackers to hang an entire server with a single, specially crafted URL. The...
Exporter-toolkit cache flaw lets attackers bypass Prometheus auth with bcrypt hashes.
A critical security vulnerability has been discovered in the Prometheus exporter-toolkit that allows attackers to bypass basic authentication through cache poisoning, potentially exposing sensitive...
CVE-2022-3509: Critical Protobuf Java DoS Vulnerability - Analysis & Mitigation
A critical denial-of-service vulnerability in Google's Protocol Buffers Java implementation has been identified, designated as CVE-2022-3509, which could allow attackers to crash or severely degrade...
CVE-2007-6109 & Azure Linux: Microsoft's VEX CSAF Attestation Signals New Open Source Security Era
Microsoft's recent public attestation that its Azure Linux distribution contains a vulnerable GNU Emacs component affected by CVE-2007-6109 represents more than just another security advisory—it...
Memcached CVE-2023-46852: Critical DoS Vulnerability in Proxy Mode & Patch Guide
A critical buffer overflow vulnerability in Memcached, tracked as CVE-2023-46852, has been identified as a deceptively small parser bug with potentially severe operational consequences. This security...
CVE-2023-46752: Critical FRR BGP Vulnerability Threatens Network Stability
A critical vulnerability in the widely-used FRRouting (FRR) software suite, tracked as CVE-2023-46752, has exposed network infrastructure to potential denial-of-service attacks that could crash BGP...
CVE-2023-46753: Critical FRR BGP Vulnerability Threatens Network Stability
A critical vulnerability in the FRRouting (FRR) software suite, tracked as CVE-2023-46753, has exposed a fundamental weakness in how network infrastructure handles Border Gateway Protocol (BGP)...
Patch available for nkeys/xkeys auth bypass flaw in Azure Linux NATS servers
Microsoft's recent security advisory has brought critical attention to CVE-2023-46129, a vulnerability affecting the nkeys and xkeys authentication mechanisms in open-source components used within...
Werkzeug CVE-2023-46136: Critical DoS Vulnerability Threatens Python Web Services
A critical denial-of-service vulnerability in Werkzeug, one of Python's most widely used web service libraries, has security teams scrambling to patch systems before attackers can exploit the flaw....