Microsoft releases 97 security fixes, patching one actively exploited zero-day flaw in the Windows Common Log File System and seven critical RCE vulnerabilities
Today is Microsoft's April 2023 Patch Tuesday, and security updates fix one actively exploited zero-day vulnerability and a total of 97 flaws.
BleepingComputer Lawrence Abrams
Related Coverage
- Nokoyawa ransomware attacks with Windows zero-day Securelist · Boris Larin
- Patch Tuesday - April 2023 Rapid7 · Adam Barnett
- CISA adds Microsoft, Apple bugs to exploited vulnerabilities catalog The Record · Jonathan Greig
- Ransomware gangs increasingly deploy zero-days to maximize attacks CyberScoop · AJ Vicens
- Windows Zero-Day Exploited in Nokoyawa Ransomware Attacks SecurityWeek · Eduard Kovacs
- Microsoft Patches Zero-Day Bug Exploited by Ransomware Group GovInfoSecurity.com · Mihir Bagwe
- April Patch Tuesday fixes zero-day used to deliver ransomware ComputerWeekly.com · Alex Scroxton
- Microsoft April 2023 Patch Tuesday SANS Internet Storm Center · Renato Marinho
- SAP April 2023 security updates fix critical vulnerabilities Security Affairs · Pierluigi Paganini
- Critical Windows flaw has been exploited in ransomware attacks, so patch now TechRadar
- Microsoft (& Apple) Patch Tuesday, April 2023 Edition Krebs on Security · Brian Krebs
- April 2023 Patch Tuesday: One Zero-Day and Seven Critical Vulnerabilities Identified crowdstrike.com
- Patch Tuesday brings a zero day fix and a patch for a... 2013 bug? The Stack
- April Patch Tuesday: Ransomware gangs already exploiting this Windows bug The Register · Jessica Lyons Hardcastle
- Windows zero-day vulnerability exploited in ransomware attacks BleepingComputer · Sergiu Gatlan
- Microsoft Patches 97 CVEs, Including Zero-Day & Wormable Bugs Dark Reading · Jai Vijayan
- Microsoft Fixes Zero-Day Bug This Patch Tuesday Infosecurity · Phil Muncaster
- Microsoft patches zero-day exploited by attackers (CVE-2023-28252) Help Net Security · Zeljka Zorz
- Microsoft Patch Tuesday for April 2023 — Snort rules and prominent vulnerabilities Cisco Talos Blog · Jonathan Munshaw
- Microsoft News: Windows 11 gets Patch Tuesday KB5025239 update MSPoweruser · Joe Rogun
- Windows 11 Patch Tuesday updates out for 22H2 (KB5025239) and 21H2 (KB5025224) Neowin · Paul Hill
- Microsoft Windows Security Updates April 2023: What you need to know before installation gHacks Technology News · Martin Brinkmann
- Zero-day vulnerability in CLFS | Kaspersky official blog Kaspersky
- Windows 10 April 2023 Patch Tuesday (KB5025221) out — here's what's new and what's broke Neowin · Sayan Sen
- Patch Tuesday Brings New Features to Windows 11 Thurrott · Paul Thurrott
- April 2023 - Patch Tuesday — 20 Elevation of Privilege Vulnerabilities — 8 Security Feature Bypass Vulnerabilities — 45 Remote Code Execution Vulnerabilities … Marcus Caetano
- 5-Year-Old Windows Defender Bug That Caused CPU Spikes on Firefox Finally Fixed PCMag · Michael Kan
- Windows Defender finally squashes Firefox bug that ate CPUs for 5 years PCWorld · Michael Crider
- Microsoft deigns to fix five-year-old Defender bug that slowed Firefox The Register · Thomas Claburn
- Microsoft finally fixes 5 year old Windows Defender high CPU bug on Mozilla Firefox Neowin · Sayan Sen
- Microsoft fixes 5-year-old Windows Defender bug that was killing Firefox performance TechSpot · Alfonso Maruccia
- Microsoft finally gets around to fixing half-decade-old Firefox CPU bug TechRadar · John Loeffler
- Firefox will no longer push your CPU past the breaking point Windows Report · Alexandru Poloboc
Discussion
-
@kaspersky
@kaspersky
on x
Elevation-of-privilege exploits on #MicrosoftWindows!! While the majority of zero-days that we've discovered were used by APTs, this group using the CVE-2023-28252 zero-day, attempted to deploy the #Nokoyawaransomware! Read the full article➡️ https://kas.pr/c6o6 https://twitter.c…
-
@maddiestone
Maddie Stone
on x
Another Windows CLFS itw 0-day: CVE-2023-28252 discovered by @oct0xor, Mandiant, and DBAppSecurity #itw0days https://securelist.com/...
-
@gabriellandau
Gabriel Landau
on x
I am shocked, shocked to find ransomware gangs using feature-rich red team tools to hurt people... again 😐 https://twitter.com/... https://twitter.com/...