Welcome to Your New Home, Windows Server 2012!
Extended Security Updates no longer available for Windows Server 2012? No problem. How time flies... It's been three years since we security-adopted Windows Server 2012 and 2012 R2, after Microsoft's...
Extended Security Updates no longer available for Windows Server 2012? No problem. How time flies... It's been three years since we security-adopted Windows Server 2012 and 2012 R2, after Microsoft's...
July 2026 Windows Updates brought a patch for CVE-2026-54992, a remote code execution vulnerability in Windows Message Queuing Queue Manager, allowing an attacker to set up a malicious server and have...
July 2026 Windows Updates brought a patch for CVE-2026-40362, a remote code execution vulnerability in Microsoft Excel that allows a remote attacker to execute arbitrary code on user's computer as soo...
[Update 9/9/2026: Our original patches issued on 9/7/2026 blocked administrators from changing passwords for other users. Impact was limited to password change performed via Kerberos, which did not af...
Expensive Upgrade is Not Your Only Option: 0patch Will Secure Your Office Apps For Years To Come! Microsoft Office 2021 is about to receive its last official security patches this October, much like...
July 2026 Windows Updates brought a patch for CVE-2026-54121, an elevation of privilege vulnerability allowing an attacker to impersonate a computer account in a Windows domain, potentially resulting...
Earlier this month, security researcher Shai Laron of Semperis published a detailed article on a privilege escalation vulnerability in Kerberos they dubbed "KerberLoss." This vulnerability allows an a...
June 2026 Windows Updates brought a patch for CVE-2026-45586, a local privilege escalation vulnerability in Windows Collaborative Translation Framework, allowing a local unprivileged attacker to execu...
[Update 8/11/2026: Microsoft patched "LegacyHive" with August 2026 updates and assigned it CVE-2026-62832. Our users had this vulnerability patched 23 days before the official vendor patch became avai...
June 2026 Windows Updates brought a patch for CVE-2026-47289, a remote code execution vulnerability in Remote Desktop Client, allowing a malicious RDP server to cause memory corruption in connecting R...
November 2025 Windows Updates brought a patch for CVE-2025-60704, a privilege escalation vulnerability in Kerberos, allowing the attacker residing in local network to impersonate any domain user. The...
January 2026 Windows Updates brought a patch for CVE-2026-20871, a local privilege escalation vulnerability in Desktop Window Manager, allowing a local unprivileged attacker to execute arbitrary code...