Endpoint Security
The latest Endpoint Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
Urgent Microsoft Patch Closes Remote Code Execution Hole in Windows Media: CVE-2025-53131
Microsoft has shipped a critical security update to plug a heap-based buffer overflow in Windows Media components that could hand remote attackers the ability to execute arbitrary code on unpatched...
Microsoft Patches Windows Installer Flaw Allowing SYSTEM-Level Elevation
Microsoft has fixed a high-impact elevation-of-privilege vulnerability in Windows Installer that could allow a locally authorized attacker to gain SYSTEM-level privileges on unpatched systems....
Microsoft Warns of DirectX Kernel DoS Flaw That Can Crash Hosts Through Unchecked Graphics Allocations
Microsoft has issued a security advisory for CVE-2025-50172, a vulnerability in the DirectX Graphics Kernel that allows an authenticated attacker to exhaust system resources and cause a...
Urgent Patch for CVE-2025-50161: Win32K GRFX Heap Overflow Enables SYSTEM Escalation
Microsoft's latest security advisory warns of a heap-based buffer overflow in the Win32K GRFX subsystem that could allow an authenticated local attacker to escalate privileges to SYSTEM. Identified...
Microsoft Patches Critical Use-After-Free in Windows PPP EAP‑TLS, Enabling Local Privilege Escalation
Microsoft has issued a security advisory for CVE‑2025‑50159, a use‑after‑free vulnerability in the Remote Access Point‑to‑Point Protocol (PPP) EAP‑TLS implementation that can allow an...
Windows File Explorer NTLM Leak: CVE-2025-50154 Exposes Credentials in Stealthy Attacks
A single unassuming ZIP archive can now become a weapon to steal Windows credentials, thanks to a newly patched flaw in Windows File Explorer. Microsoft's March 11, 2025 Patch Tuesday update fixed a...
Windows AFD.sys Hit Again: Race Condition CVE-2025-49762 Opens Door to SYSTEM Access
Microsoft has disclosed yet another high-severity vulnerability in the Windows Ancillary Function Driver for WinSock (AFD.sys), this time a race condition tracked as CVE-2025-49762 that allows a...
Critical Race Condition in Windows Graphics Lets Attackers Escalate to SYSTEM – What to Do
Microsoft has disclosed a critical elevation-of-privilege vulnerability in the Windows Graphics Component, tracked as CVE-2025-49743, that could allow attackers to gain SYSTEM-level access on a...
Microsoft to Strip PowerShell 2.0 from Windows 11 24H2 and Server 2025 Starting August
Microsoft will yank PowerShell 2.0 out of Windows 11, version 24H2, and Windows Server 2025 beginning this August, ending a 16-year run for the legacy scripting engine that has become a persistent...
Dell’s Three-Tier AI PC Push Targets UAE Enterprises as Windows 10 Deadline Looms
With Windows 10 support ending on October 14, 2025, UAE businesses are facing a forced device refresh cycle—and Dell is moving aggressively to ensure that its AI-enabled PCs, not traditional...
Live Hack Exposes Windows Hello Biometric Loophole—Researchers Say Disable It Now
A packed auditorium at Black Hat 2025 in Las Vegas watched in silence as security researcher Tillmann Osswald remotely enrolled his own face onto his colleague’s Windows Hello-protected...
Windows Hello Biometric Bypass: Researchers Swap Faces to Hijack PCs—Here’s How ESS Stops It
Two German researchers standing on the Black Hat stage just demonstrated how an attacker with local admin rights can swap their own facial biometrics into a stolen laptop’s Windows Hello...