Live
Microsoft Patches Windows Installer Flaw Allowing SYSTEM-Level Elevation·MSFT +0.1%MSDTC Integer Overflow Opens Door to Memory Leak—Patch Now, Microsoft Warns·NVDA +3.0%Microsoft Patches Critical RRAS Heap Overflow CVE-2025-50160 That Exposes VPN Servers to Remote Takeover·GOOGL +1.2%Windows File Explorer NTLM Leak: CVE-2025-50154 Exposes Credentials in Stealthy Attacks·AMZN +2.9%Windows AFD.sys Hit Again: Race Condition CVE-2025-49762 Opens Door to SYSTEM Access·MSFT +0.1%Microsoft Discloses Critical PowerPoint Use-After-Free Flaw, CVE-2025-53761, Enabling Local Code Execution·NVDA +3.0%Microsoft Warns of Excel RCE Flaw CVE-2025-53759, Workarounds Provided·GOOGL +1.2%SharePoint 'ToolShell' Zero-Day Exploited: Critical RCE Patched Amid Active Attacks·AMZN +2.9%Microsoft Patches Windows Installer Flaw Allowing SYSTEM-Level Elevation·MSFT +0.1%MSDTC Integer Overflow Opens Door to Memory Leak—Patch Now, Microsoft Warns·NVDA +3.0%Microsoft Patches Critical RRAS Heap Overflow CVE-2025-50160 That Exposes VPN Servers to Remote Takeover·GOOGL +1.2%Windows File Explorer NTLM Leak: CVE-2025-50154 Exposes Credentials in Stealthy Attacks·AMZN +2.9%Windows AFD.sys Hit Again: Race Condition CVE-2025-49762 Opens Door to SYSTEM Access·MSFT +0.1%Microsoft Discloses Critical PowerPoint Use-After-Free Flaw, CVE-2025-53761, Enabling Local Code Execution·NVDA +3.0%Microsoft Warns of Excel RCE Flaw CVE-2025-53759, Workarounds Provided·GOOGL +1.2%SharePoint 'ToolShell' Zero-Day Exploited: Critical RCE Patched Amid Active Attacks·AMZN +2.9%

Edr

The latest Edr coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 7:24 AM
Latest Most Read Breaking
Sort
Alwaysinstallelevated · Applocker

Microsoft Patches Windows Installer Flaw Allowing SYSTEM-Level Elevation

Microsoft has fixed a high-impact elevation-of-privilege vulnerability in Windows Installer that could allow a locally authorized attacker to gain SYSTEM-level privileges on unpatched systems....

Advertisement
Afd.sys · Cve-2025-49762

Windows AFD.sys Hit Again: Race Condition CVE-2025-49762 Opens Door to SYSTEM Access

Microsoft has disclosed yet another high-severity vulnerability in the Windows Ancillary Function Driver for WinSock (AFD.sys), this time a race condition tracked as CVE-2025-49762 that allows a...

SE Security Desk·48w ago
Asr · Cve-2025-53761

Microsoft Discloses Critical PowerPoint Use-After-Free Flaw, CVE-2025-53761, Enabling Local Code Execution

Microsoft has issued a security advisory for a new use-after-free vulnerability in PowerPoint, tracked as CVE-2025-53761, that allows an unauthorized attacker to execute code locally. The flaw, which...

SE Security Desk·48w ago
Asr · Cisa

Microsoft Warns of Excel RCE Flaw CVE-2025-53759, Workarounds Provided

A newly disclosed vulnerability in Microsoft Excel, tracked as CVE-2025-53759, allows attackers to execute arbitrary code on a victim’s machine by tricking them into opening a specially crafted...

SE Security Desk·48w ago
Cve-2025-53770 · Cybersecurity

SharePoint 'ToolShell' Zero-Day Exploited: Critical RCE Patched Amid Active Attacks

Microsoft has released an emergency security update to patch a critical remote code execution (RCE) vulnerability in SharePoint Server that has been actively exploited in the wild. Tracked as...

SE Security Desk·48w ago
Asr · Buffer Overflow

CVE-2025-53741: Microsoft Issues Emergency Excel Patch to Stop Remote Code Execution via Heap Overflow

Microsoft has disclosed a critical heap-based buffer overflow vulnerability in Excel, tracked as CVE-2025-53741, that can give attackers the ability to remotely execute code on a vulnerable machine...

SE Security Desk·48w ago
Cve-2025-53730 · Document Parsing

Visio Under Fire: Microsoft Releases Patch for Use-After-Free Vulnerability CVE-2025-53730

Microsoft has disclosed a new use-after-free vulnerability in Visio, tracked as CVE-2025-53730, that allows an attacker to execute arbitrary code locally when a user opens a maliciously crafted...

SE Security Desk·48w ago
Active Directory · Cldap

Microsoft Patches Zero-Click LDAPNightmare Exploits That Crash Domain Controllers (CVE-2024-49112/49113)

SafeBreach Labs researchers dropped a bombshell at DEF CON with a zero-click exploit chain that weaponizes Windows LDAP protocol handling to crash Domain Controllers or, in the worst case, execute...

SE Security Desk·48w ago
Cloud Security · Cyber Defense

Huntress and Microsoft Partner to Bolster SMB Cybersecurity

Huntress and Microsoft have announced a strategic partnership designed to significantly enhance cybersecurity defenses for small and medium-sized businesses (SMBs). This collaboration addresses the...

SE Security Desk·53w ago