Close Menu
globalcrimedesk.comglobalcrimedesk.com
    What's Hot

    Trump’s meeting with Sharaa, unthinkable just months ago, boosts Syrians’ hopes

    CFPB Quietly Kills Rule to Shield Americans From Data Brokers

    Transitional Justice Legislation in South Sudan

    Facebook X (Twitter) Instagram
    Trending
    • Trump’s meeting with Sharaa, unthinkable just months ago, boosts Syrians’ hopes
    • CFPB Quietly Kills Rule to Shield Americans From Data Brokers
    • Transitional Justice Legislation in South Sudan
    • Star’s testimony at Paris trial is emotional, defiant : NPR
    • Neue EU-Schwachstellen-Datenbank geht an den Start
    • Limits to offenders’ recall to stop prisons running out of space
    • UN Security Council Should Commit to People with Disabilities
    • Maldives parliament removes two Supreme Court judges | Politics News
    Facebook X (Twitter) Instagram
    globalcrimedesk.comglobalcrimedesk.com
    • Home
    • Cyber
    • Global
    • Law
    • Mafia
    • Prevention
    • Scandals
    • Terror
    • Trafficking
    globalcrimedesk.comglobalcrimedesk.com
    Home»Cyber»Patch Tuesday, May 2025 Edition – Krebs on Security
    Cyber

    Patch Tuesday, May 2025 Edition – Krebs on Security

    mediamillion1000@gmail.comBy [email protected]May 14, 2025No Comments4 Mins Read
    Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
    Follow Us
    Google News Flipboard
    Patch Tuesday, May 2025 Edition – Krebs on Security
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    Microsoft on Tuesday released software updates to fix at least 70 vulnerabilities in Windows and related products, including five zero-day flaws that are already seeing active exploitation. Adding to the sense of urgency with this month’s patch batch from Redmond are fixes for two other weaknesses that now have public proof-of-concept exploits available.

    Patch Tuesday, May 2025 Edition – Krebs on Security

    Microsoft and several security firms have disclosed that attackers are exploiting a pair of bugs in the Windows Common Log File System (CLFS) driver that allow attackers to elevate their privileges on a vulnerable device. The Windows CLFS is a critical Windows component responsible for logging services, and is widely used by Windows system services and third-party applications for logging. Tracked as CVE-2025-32701 & CVE-2025-32706, these flaws are present in all supported versions of Windows 10 and 11, as well as their server versions.

    Kev Breen, senior director of threat research at Immersive Labs, said privilege escalation bugs assume an attacker already has initial access to a compromised host, typically through a phishing attack or by using stolen credentials. But if that access already exists, Breen said, attackers can gain access to the much more powerful Windows SYSTEM account, which can disable security tooling or even gain domain administration level permissions using credential harvesting tools.

    “The patch notes don’t provide technical details on how this is being exploited, and no Indicators of Compromise (IOCs) are shared, meaning the only mitigation security teams have is to apply these patches immediately,” he said. “The average time from public disclosure to exploitation at scale is less than five days, with threat actors, ransomware groups, and affiliates quick to leverage these vulnerabilities.”

    Two other zero-days patched by Microsoft today also were elevation of privilege flaws: CVE-2025-32709, which concerns afd.sys, the Windows Ancillary Function Driver that enables Windows applications to connect to the Internet; and CVE-2025-30400, a weakness in the Desktop Window Manager (DWM) library for Windows. As Adam Barnett at Rapid7 notes, tomorrow marks the one-year anniversary of CVE-2024-30051, a previous zero-day elevation of privilege vulnerability in this same DWM component.

    The fifth zero-day patched today is CVE-2025-30397, a flaw in the Microsoft Scripting Engine, a key component used by Internet Explorer and Internet Explorer mode in Microsoft Edge.

    Chris Goettl at Ivanti points out that the Windows 11 and Server 2025 updates include some new AI features that carry a lot of baggage and weigh in at around 4 gigabytes. Said baggage includes new artificial intelligence (AI) capabilities, including the controversial Recall feature, which constantly takes screenshots of what users are doing on Windows CoPilot-enabled computers.

    Microsoft went back to the drawing board on Recall after a fountain of negative feedback from security experts, who warned it would present an attractive target and a potential gold mine for attackers. Microsoft appears to have made some efforts to prevent Recall from scooping up sensitive financial information, but privacy and security concerns still linger. Former Microsoftie Kevin Beaumont has a good teardown on Microsoft’s updates to Recall.

    In any case, windowslatest.com reports that Windows 11 version 24H2 shows up ready for downloads, even if you don’t want it.

    “It will now show up for ‘download and install’ automatically if you go to Settings > Windows Update and click Check for updates, but only when your device does not have a compatibility hold,” the publication reported. “Even if you don’t check for updates, Windows 11 24H2 will automatically download at some point.”

    Apple users likely have their own patching to do. On May 12 Apple released security updates to fix at least 30 vulnerabilities in iOS and iPadOS (the updated version is 18.5). TechCrunch writes that iOS 18.5 also expands emergency satellite capabilities to iPhone 13 owners for the first time (previously it was only available on iPhone 14 or later).

    Apple also released updates for macOS Sequoia, macOS Sonoma, macOS Ventura, WatchOS, tvOS and visionOS. Apple said there is no indication of active exploitation for any of the vulnerabilities fixed this month.

    As always, please back up your device and/or important data before attempting any updates. And please feel free to sound off in the comments if you run into any problems applying any of these fixes.

    Edition Krebs Patch Security Tuesday
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Previous ArticlePeace Diplomacy and the Russo-Ukraine War
    Next Article Three new prisons to be built, justice secretary says, as MoJ warns men’s jails could run out of space – UK politics live | Politics
    [email protected]
    • Website

    Related Posts

    CFPB Quietly Kills Rule to Shield Americans From Data Brokers

    May 14, 2025

    Neue EU-Schwachstellen-Datenbank geht an den Start

    May 14, 2025

    UN Security Council Should Commit to People with Disabilities

    May 14, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Latest Posts

    Trump’s meeting with Sharaa, unthinkable just months ago, boosts Syrians’ hopes

    CFPB Quietly Kills Rule to Shield Americans From Data Brokers

    Transitional Justice Legislation in South Sudan

    Star’s testimony at Paris trial is emotional, defiant : NPR

    Trending Posts

    Trump’s meeting with Sharaa, unthinkable just months ago, boosts Syrians’ hopes

    May 14, 2025

    CFPB Quietly Kills Rule to Shield Americans From Data Brokers

    May 14, 2025

    Transitional Justice Legislation in South Sudan

    May 14, 2025

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    News

    • Cyber
    • Global
    • Law
    • Mafia
    • Prevention

    Company

    • About Us
    • Disclaimer
    • Get In Touch
    • Privacy policy
    • Terms & Condition
    Recent Posts
    • Trump’s meeting with Sharaa, unthinkable just months ago, boosts Syrians’ hopes
    • CFPB Quietly Kills Rule to Shield Americans From Data Brokers

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    © 2025 globalcrimedesk. Designed by Pro.
    Facebook X (Twitter) Pinterest Vimeo WhatsApp TikTok Instagram

    Type above and press Enter to search. Press Esc to cancel.