Attention: You are using an outdated browser, device or you do not have the latest version of JavaScript downloaded and so this website may not work as expected. Please download the latest software or switch device to avoid further issues.
| 16 Sep 2026 | |
| Written by Gabi Gerber | |
| Vendor News |
| Hacking Topics, Security Operation Center |
Microsoft on Monday issued out-of-band updates to address several issues caused by this month's massive, record-setting Patch Tuesday.
The emergency patches fix problems with Remote Desktop Services (RDS) that came to light last week, as well as unintended side effects for Hyper-V virtual machines and USB audio devices following the historic update last week.
September's Patch Tuesday addressed a whopping 974 unique CVEs, smashing the previous record set earlier this year; by comparison, Microsoft patched 909 CVEs in all of 2023. The release clearly illustrates how AI has supercharged vulnerability reporting and led to an alarming number of CVEs. And it may also indicate that faulty patches could become more common with increasingly large updates for software vendors. More here
SharePoint access often means access to the keys of the kingdom, something attackers and defenders understand all too well. More...
Join our multi-language webinar on June 11, 2026 to hone your cybersecurity skills, expand your practical knowledge and … More...
ImmuniWeb is hosting an interactive webinar “Web, Mobile & Cloud Penetration Testing in 2026: Best Practices” for all ou… More...
ImmuniWeb is a Triple Winner of the Global InfoSec Awards at RSAC 2026 More...
A purported ad-blocker exfiltrates reams of sensitive information and benefits from having Google's stamp of approval despite researcher warnings. More...
The "third-party[.]com" domain, commonly used as a documentation placeholder, has been observed serving a ClickFix lure … More...
Microsoft seized 50 websites and disabled more than 150 domains as part of a coordinated disruption effort against a phi… More...
A process parameter-poisoning technique evades EDR by injecting code into process initialization structures without usin… More...
MFA is essential, but it cannot replace OAuth governance, least-privilege scopes, consent monitoring, and rapid revocati… More...