Microsoft addresses an ‘exceptional’ number of zero-day security flaws.

Microsoft addresses an ‘exceptional’ number of zero-day security flaws.

      Luke Larsen / Digital Trends

      Today is an excellent opportunity to ensure that your Windows 10 and 11 systems are fully updated, as Microsoft has issued a significant new security update addressing numerous zero-day vulnerabilities. This patch is part of Microsoft's Patch Tuesday release and includes fixes for Windows Server as well, covering six vulnerabilities that have already been exploited, in addition to six more critical issues.

      The latest update resolves security concerns regarding seven zero-day vulnerabilities, encompassing flaws that could allow remote code execution—where an attacker can execute code on a victim's device. One such vulnerability necessitates that the attacker first deceive a local user into performing specific actions, such as mounting a harmful virtual hard disk image, which has already been exploited by some hackers. This vulnerability, identified as CVE-2025-24993, has a severity rating of 7.8 from Microsoft, making it crucial to apply the patch for protection.

      According to The Register, another vulnerability, CVE-2025-24991, also leverages virtual hard disk images, granting attackers access to data, while a similar flaw, CVE-2025-24984, allows attackers to write information into a log file. The patch also includes three additional flaws that have been exploited, as well as six other critical vulnerabilities.

      The Zero Day Initiative describes the number of actively exploited bugs in Windows as “extraordinary,” urging system administrators to act swiftly to secure their systems against these issues. It has also been noted that a Microsoft Management Console Security Feature Bypass Vulnerability, CVE-2025-26633, has already impacted over 600 organizations, prompting the need for admins to "test and deploy this fix quickly to prevent their organization from being included in the affected list."

      Alongside the Windows updates from Microsoft, Adobe has released patches for vulnerabilities in its Adobe Acrobat Reader, Substance 3D Sampler, Illustrator, Substance 3D Painter, InDesign, Substance 3D Modeler, and Substance 3D Designer applications as part of Patch Tuesday. Although these vulnerabilities are not currently being exploited, it remains wise to ensure your software is up to date.

      Georgina has been a space writer at Digital Trends for six years, focusing on topics such as human space exploration and planetary...

      Is macOS more secure than Windows? This malware report clarifies the situation.

      The belief that Macs are at a lower risk of malware and viruses compared to Windows PCs has been longstanding, but how accurate is this claim? A recent report has provided some insights, which may surprise many.

      According to threat research organization Elastic Security Labs, approximately 39% of all malware infections occur on Windows PCs. On a positive note for Apple enthusiasts, only 6% of breaches have been recorded on macOS, indicating that Mac systems are considerably less susceptible than their Windows counterparts.

      Apple's security surpasses that of Microsoft and Twitter, according to federal officials.

      Apple has built a reputation for robust security, and the U.S. government seemingly concurs, having commended the company for its security measures. Concurrently, federal authorities have indicated that Microsoft and Twitter must enhance their security to better protect their users, as reported by CNBC.

      During a speech at Carnegie Mellon University, Cybersecurity and Infrastructure Security Agency Director Jen Easterly highlighted Apple as a company that prioritizes security and accountability, suggesting that other tech firms should take heed.

      It's not just you—Microsoft acknowledges that its patches caused OneDrive problems.

      If you have been facing crashes and error messages with OneDrive, you might want to consider that it could be due to Microsoft. Typical solutions such as restarting, or signing out and back in will not resolve the problem, as it originates from the most recent Windows 10 update.

      The issue reportedly surfaces after installing the 22H2 update for Windows 10, released on October 18, 2022. Today, Microsoft confirmed that after updating Windows 10, OneDrive might “unexpectedly close,” a euphemism for crashing. This problem is not impacting Windows 11 devices, and OneDrive can still be accessed via a web browser.

Microsoft addresses an ‘exceptional’ number of zero-day security flaws. Microsoft addresses an ‘exceptional’ number of zero-day security flaws. Microsoft addresses an ‘exceptional’ number of zero-day security flaws. Microsoft addresses an ‘exceptional’ number of zero-day security flaws. Microsoft addresses an ‘exceptional’ number of zero-day security flaws.

Other articles

Microsoft addresses an ‘exceptional’ number of zero-day security flaws.

Microsoft has issued a patch addressing numerous zero-day vulnerabilities in Windows.