Live

Windows Security

The latest Windows Security coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 7:34 AM
Latest Most Read Breaking
Sort
Explorer Spoofing · Network Attack

CVE-2025-58739: Windows File Explorer Spoofing Vulnerability Exposes NTLM Credentials

Microsoft has disclosed a critical security vulnerability in Windows File Explorer that could allow attackers to spoof user interfaces and potentially expose NTLM credentials to unauthorized parties....

Advertisement
Afd.sys · Privilege Escalation

Patches released for CVE-2025-58714 AFD driver flaw granting attackers SYSTEM access

Microsoft has confirmed a serious elevation-of-privilege vulnerability in the Windows Ancillary Function Driver for WinSock (afd.sys) that could allow attackers to gain SYSTEM-level privileges on...

SE Security Desk·40w ago
Patch Management · Privilege Escalation

CVE-2025-58714: Critical WinSock AFD Vulnerability Enables Local Privilege Escalation

Microsoft has issued an urgent security advisory for CVE-2025-58714, a critical elevation-of-privilege vulnerability in the Windows Ancillary Function Driver for WinSock that enables attackers to...

SE Security Desk·40w ago
Cdpsvc · Cdpsvc Vulnerability

Windows CDPSvc UAF Vulnerability CVE-2025-58727: Critical Patch Required

A critical use-after-free vulnerability in Windows' Connected Devices Platform Service (CDPSvc) has been identified as CVE-2025-58727, posing significant elevation-of-privilege risks for...

SE Security Desk·40w ago
Cryptographic Services · Cve 2025 60724

CVE-2025-58720: Critical Windows Cryptographic Services Vulnerability Explained

Microsoft has disclosed CVE-2025-58720, a significant information disclosure vulnerability affecting Windows Cryptographic Services that could allow attackers to access sensitive data from affected...

SE Security Desk·40w ago
Com Plus Event System · Cve 2025 58725

CVE-2025-58725: Critical Windows COM+ EoP Vulnerability Requires Immediate Patching

Microsoft has disclosed a critical elevation-of-privilege vulnerability in the Windows COM+ Event System, designated CVE-2025-58725, that could allow attackers to gain SYSTEM privileges on affected...

SE Security Desk·40w ago
Cve 2025 55690 · Elevation Of Privilege

CVE-2025-55690: Critical PrintWorkflowUserSvc EoP Vulnerability Patched in Windows

Microsoft has addressed a critical elevation of privilege vulnerability in the Windows printing stack, designated CVE-2025-55690, affecting the PrintWorkflowUserSvc service. This memory-safety flaw...

SE Security Desk·40w ago
Kernel Vulnerability · Privilege Escalation

Windows Kernel Race Condition Opens Door to System Takeover – Patch Now, Microsoft Says

Microsoft has confirmed a dangerous flaw in the Windows kernel that could let an attacker with minimal access take full control of a system, and the company is urging everyone to install the...

SE Security Desk·40w ago
Cloud Files · Kernel Vulnerability

CVE-2025-55680: Critical Windows Cloud Files Driver Vulnerability Patched

Microsoft has addressed a critical elevation-of-privilege vulnerability in the Windows Cloud Files Mini Filter Driver (cldflt.sys) that could allow attackers to gain SYSTEM-level privileges on...

SE Security Desk·40w ago