{"id":3417,"date":"2025-06-11T07:47:10","date_gmt":"2025-06-11T07:47:10","guid":{"rendered":"https:\/\/techtrendfeed.com\/?p=3417"},"modified":"2025-06-11T07:47:10","modified_gmt":"2025-06-11T07:47:10","slug":"microsoft-fixes-66-bugs-together-with-lively-0-day","status":"publish","type":"post","link":"https:\/\/techtrendfeed.com\/?p=3417","title":{"rendered":"Microsoft Fixes 66 Bugs, Together with Lively 0-Day"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p>Microsoft\u2019s June Patch Tuesday replace has landed, bringing safety fixes for 66 vulnerabilities throughout its product line. Among the many patched flaws is one which was already being exploited in <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/researchers-poc-fortinet-cve-2025-32756-quick-patch\/\" target=\"_blank\" data-type=\"post\" data-id=\"130382\" rel=\"noreferrer noopener\">real-world assaults<\/a>, making this month\u2019s updates notably vital for each enterprises and particular person customers.<\/p>\n<h3 id=\"one-zero-day-actively-exploited\" class=\"wp-block-heading\"><strong>One Zero-Day Actively Exploited<\/strong><\/h3>\n<p>The standout repair addresses <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-33053\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">CVE-2025-33053<\/a>, a vulnerability within the WebDAV part of Home windows. This flaw might enable attackers to execute code remotely if exploited appropriately. Because it was already being utilized in assaults earlier than immediately\u2019s patch launch, it falls into the \u201czero-day\u201d class.<\/p>\n<p>The WebDAV vulnerability impacts each <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/windows-11-10-snipping-tools-vulnerable\/\" target=\"_blank\" data-type=\"post\" data-id=\"97442\" rel=\"noreferrer noopener\">Home windows 10 and Home windows 11<\/a>, together with associated server variations. Whereas Microsoft has not disclosed the total particulars of the assaults, they&#8217;ve confirmed that the bug was present in use within the wild.<\/p>\n<h3 id=\"10-critical-issues-fixed\" class=\"wp-block-heading\"><strong>10 Vital Points Fastened<\/strong><\/h3>\n<p>Along with the zero-day, Microsoft patched 10 vulnerabilities rated Vital, which usually means they permit distant code execution or elevation of privilege with out a lot consumer interplay. These embody 4 bugs in Microsoft Workplace, which proceed to be a daily goal for attackers trying to ship malicious paperwork by means of e mail.<\/p>\n<p>Different merchandise receiving fixes embody Microsoft Edge, Energy Automate, .NET, and elements of Home windows itself. Whereas not one of the different points have been reported as actively exploited, a number of are marked as extra prone to be focused within the close to time period.<\/p>\n<h3 id=\"windows-update-details\" class=\"wp-block-heading\"><strong>Home windows Replace Particulars<\/strong><\/h3>\n<p>The up to date packages can be found now and embody:<\/p>\n<ul class=\"wp-block-list is-style-cnvs-list-styled-positive\">\n<li><strong>Home windows 11<\/strong>: KB5060842 (22H2 and 23H2)<\/li>\n<\/ul>\n<ul class=\"wp-block-list is-style-cnvs-list-styled-positive\">\n<li><strong>Home windows 10<\/strong>: KB5060533 and KB5060999<\/li>\n<\/ul>\n<ul class=\"wp-block-list is-style-cnvs-list-styled-positive\">\n<li><strong>Home windows Server variations<\/strong>: Additionally up to date, relying on the construct in use.<\/li>\n<\/ul>\n<p>Admins ought to examine their replace administration methods to verify rollout and assess any compatibility issues which will come up from the newest patches.<\/p>\n<h3 id=\"why-this-month-matters\" class=\"wp-block-heading\"><strong>Why This Month Issues<\/strong><\/h3>\n<p>The fast exploitation of CVE-2025-33053 as soon as once more reveals how briskly attackers transfer when new vulnerabilities are disclosed. Whereas zero days usually make headlines, the opposite fixes shouldn&#8217;t be ignored. A number of of this month\u2019s bugs contain elements usually uncovered to the web or ceaselessly utilized in enterprise environments.<\/p>\n<p>Firms that delay patching usually are not simply risking knowledge theft but in addition the price of restoration from ransomware, which regularly begins with bugs like those patched immediately.<\/p>\n<p><a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.linkedin.com\/in\/nicholasacarroll\/\" target=\"_blank\" rel=\"noreferrer noopener\">Nick Carroll<\/a>, cyber incident response supervisor at\u00a0<a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.linkedin.com\/company\/nightwing-us\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Nightwing<\/a>, the intelligence options firm divested from RTX, commented on the Patch Tuesday occasion, stating, <em>\u201c<\/em>There are a few vulnerabilities for the Home windows Widespread Log File System (CVE-2025-32701 and CVE-2025-32706) that are Priv Esc vulnerabilities. These aren\u2019t vital, which suggests some organizations received\u2019t prioritize patching them as shortly as they most likely ought to. And for those who have a look at what tends to get quite a lot of consideration, vital vulnerabilities catch all the excitement,\u201d famous Nick.<\/p>\n<p><em>\u201c<\/em>However we see actual world assaults abusing that Home windows Log File subsystem fairly recurrently. Actually, Nightwing has defended towards exploits within the Home windows Widespread Log File System in actual world assaults final month associated to the not too long ago patched CVE-2025-29824 the place the risk actors have been abusing Dwelling-off-the-Land techniques together with the exploit,\u201d he added.<\/p>\n<h3 id=\"what-to-do-now\" class=\"wp-block-heading\"><strong>What to Do Now<\/strong><\/h3>\n<ul class=\"wp-block-list is-style-cnvs-list-styled-positive\">\n<li><strong>Apply all accessible June updates as quickly as attainable<\/strong>, particularly for methods utilizing <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/crushftp-file-transfer-software-zero-day-exploit\/\" data-type=\"post\" data-id=\"115835\"><span style=\"text-decoration: underline;\">WebDAV<\/span><\/a><\/li>\n<\/ul>\n<ul class=\"wp-block-list is-style-cnvs-list-styled-positive\">\n<li><strong>Evaluate your Workplace file dealing with insurance policies<\/strong>, particularly if customers ceaselessly obtain paperwork from exterior the group<\/li>\n<\/ul>\n<ul class=\"wp-block-list is-style-cnvs-list-styled-positive\">\n<li><strong>Monitor community site visitors<\/strong> for indicators of suspicious exercise linked to WebDAV or different patched companies<\/li>\n<\/ul>\n<ul class=\"wp-block-list is-style-cnvs-list-styled-positive\">\n<li><strong>Check in staging environments<\/strong> earlier than rolling out company-wide, particularly in environments with older or custom-made software program stacks<\/li>\n<\/ul>\n<p>Microsoft\u2019s full advisory will be discovered on its <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/msrc.microsoft.com\/update-guide\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">official safety replace information<\/a>. Patching shortly stays one of many easiest and handiest defences towards many types of cyberattacks.<\/p>\n<figure class=\"wp-block-embed aligncenter is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio\">\n<div class=\"jeg_video_container jeg_video_content\"><iframe loading=\"lazy\" title=\"The Patch Report for June 2025\" width=\"500\" height=\"281\" src=\"https:\/\/www.youtube.com\/embed\/5RJqjm6VpQg?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share\" referrerpolicy=\"strict-origin-when-cross-origin\" allowfullscreen><\/iframe><\/div>\n<\/figure>\n<p>\n\t\t\t<\/div>\n<p><template id="gi5okYkRhPoTLE9tX3iy"></template><\/script><br \/>\n<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft\u2019s June Patch Tuesday replace has landed, bringing safety fixes for 66 vulnerabilities throughout its product line. Among the many patched flaws is one which was already being exploited in real-world assaults, making this month\u2019s updates notably vital for each enterprises and particular person customers. One Zero-Day Actively Exploited The standout repair addresses CVE-2025-33053, a [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":3419,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[58],"tags":[3209,768,3207,1904,3208,618],"class_list":["post-3417","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-0day","tag-active","tag-bugs","tag-fixes","tag-including","tag-microsoft"],"_links":{"self":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/3417","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=3417"}],"version-history":[{"count":1,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/3417\/revisions"}],"predecessor-version":[{"id":3418,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/3417\/revisions\/3418"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/media\/3419"}],"wp:attachment":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=3417"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=3417"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=3417"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}<!-- This website is optimized by Airlift. Learn more: https://airlift.net. Template:. Learn more: https://airlift.net. Template: 69d9690a190636c2e0989534. Config Timestamp: 2026-04-10 21:18:02 UTC, Cached Timestamp: 2026-05-06 19:51:42 UTC -->