logo

Windows Remote Access Connection Manager Zero-Day Enables DoS Attacks

ID: 2becbb1c-e84b-53be-ad82-f10f76201dc4

STIX ID: report--2becbb1c-e84b-53be-ad82-f10f76201dc4

Feed Name: GBHackers

Threat Score
75/100

Date Published: 2026-02-11

Date Updated: 2026-04-22

Author: Divya

...
...

**Executive Summary:** Microsoft released urgent security updates on Feb 10, 2026 to address CVE-2026-21525, a RasMan null pointer dereference zero-day actively exploited in the wild that allows a local, logged-on attacker to repeatedly crash the Remote Access Connection Manager service and cause Denial of Service across affected Windows 10/11 and Server (2012–2025) builds; administrators are advised to apply the available patches immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.