logo

Microsoft fixes a bug abused in QakBot attacks plus a second under exploit

ID: 6f608992-c23a-5232-964d-bb595d9191c4

STIX ID: report--6f608992-c23a-5232-964d-bb595d9191c4

Feed Name: The Register (Security)

Threat Score
75/100

Date Published: 2024-05-14

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

May Patch Tuesday summary: multiple vendors released fixes for numerous vulnerabilities, including several high-severity and actively exploited flaws — Microsoft (multiple CVEs including ones used to deploy Qakbot and an MSHTML SFB bypass), Apple (kernel/RTKit and Safari Pwn2Own fixes), Google/Chrome (V8 out-of-bounds write exploited in the wild), VMware (use-after-free exploited at Pwn2Own), SAP, Adobe, and Intel — administrators are advised to prioritize updates for the exploited and critical CVEs immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.