Windows Server
The latest Windows Server coverage — news, analysis, and updates from the WindowsNews.AI desk.
GhostRedirector Sneaks Native Backdoors Into IIS to Hijack SEO Rankings
A stealthy campaign that has compromised at least 65 Internet-facing Windows IIS servers worldwide is using a pair of previously unseen native implants to convert legitimate websites into invisible...
Microsoft Confirms Windows August 2025 Updates Break Silent MSI Repairs, Trigger UAC Prompts
Microsoft has acknowledged a compatibility regression introduced by the August 12, 2025 cumulative security updates for Windows, which causes unexpected User Account Control (UAC) elevation prompts...
ESET Exposes GhostRedirector: China-Aligned Hackers Deploy IIS SEO Fraud and Custom Backdoor on 65 Windows Servers
In June 2025, ESET researchers unearthed a previously unknown threat actor they call GhostRedirector, which had compromised at least 65 Windows servers around the globe. The attackers deployed two...
Microsoft's August Update (KB5063878) Disrupts MSI Apps with UAC Prompts and Error 1730
Microsoft's August 12, 2025 cumulative update—KB5063878 for Windows 11 24H2 and its equivalents for Windows 10 and Windows Server—has triggered a cascade of application failures and unwanted UAC...
Microsoft’s WSUS Deprecation Paves the Way for Azure Arc Hybrid Patch Management
The September 2024 announcement that Windows Server Update Services (WSUS) is deprecated didn’t just mark the end of a familiar on‑premises patching tool — it forced thousands of organizations...
Never Expose Your Server: The Right Way to Open Windows Server Firewall Ports with wf.msc and PowerShell
A single overly permissive firewall rule can turn a routine server setup into a full-blown security incident. Just last year, thousands of organizations discovered their internal databases exposed to...
Microsoft Recommends MaximumUdpPacketSize Registry Fix to Harden Windows DNS Servers – Complete Setup Guide
Microsoft is urging administrators to apply a registry tweak that forces Windows DNS servers to handle oversized responses over TCP instead of UDP, closing a long-standing door for...
Microsoft Confirms: TLS 1.3 Will Keep Breaking IIS Express mTLS on Windows 11, No Permanent Fix Planned
Developers relying on IIS Express for local testing with client certificates (mTLS) will continue to face breakage as long as TLS 1.3 remains enabled on Windows 11, Microsoft has confirmed, with no...
SMB Signing Defaults, AES-256 Encryption Arrive as Microsoft Retires CIFS
Microsoft has flipped the switch on mandatory SMB signing for all outbound connections, a quiet but decisive blow against the 30-year-old CIFS dialect that still haunts enterprise networks. Windows...
Trend Micro WFBS Blamed for Daily RDP Blackouts on Windows Server—Mitigation Steps and Fix Emerge
At 2:00 PM Central European Time, remote desktop sessions across multiple Windows Server farms abruptly freeze. The screen goes black, input stops, and a server reboot becomes the only fix. IT...
Kerberos CVE-2025-26647 Hardening Causes Authentication Chaos: The Full Story of Audit-to-Enforce and NTAuth Requirements
Microsoft’s April 2025 security updates introduced mandatory Kerberos protections for CVE-2025-26647, but the enforcement phase triggered a cascade of authentication failures across enterprise...
Microsoft Drops Kerberos Compatibility Workarounds September 10: What You Must Do
On September 10, 2025, Microsoft will flip a permanent switch in Windows domain controllers: the temporary registry settings that have allowed weak certificate-to-user mappings will stop working, and...