The US Cybersecurity and Infrastructure Security Agency has added one new vulnerability to it’s Known Exploited Vulnerabilities Catalog for a Microsoft Windows privilege escalation vulnerability – this has been addressed in Microsoft’s July 2022 Patch Tuesday. CISA Adds One Known Exploited Vulnerability to Catalog | CISA
Yesterday was Microsoft Patch Tuesday – get it done and check everyone else is getting it done as well…
It is that time again – among the fixes and patches from Microsoft, for July 2022 is one addressing CVE-2022-22047, Windows Elevation of Privilege Vulnerability – according to Microsoft a zero-day flaw that is being exploited by threat actors. For more details see Bleeping Computer’s excellent round-up of Patch Tuesday: …
Patches for Enterprise
Microsoft’s Windows Autopatch has arrived. Targeted at Enterprise level systems: Windows Autopatch has arrived! – Microsoft Tech Community
You really should not be using Windows 7 and Windows 8.1 but if you are…
Microsoft has announced that Microsoft 365 patches and support will no longer be supplied to either Windows 7 or 8.1 even if you were an enterprise paying for extended support: No more Microsoft 365 patches for Windows 7 from 2023 • The Register Crunch date January 10 2023.
Oh No! Microsoft appears to have rolled back it’s macro protection… UPDATED 12 July 2022
This post was originally published on 8 July 2022 Update 12 July 2022 Microsoft says that this rollback of “stopping macros from the web being blocked, out of the box” is only temporary and it points out that admins can still implement this restriction through Group policies: Macros from the …