logo

Windows "inetpub" security fix can be abused to block future updates

ID: f50da41e-8db3-5650-bdf0-375deba0e00c

STIX ID: report--f50da41e-8db3-5650-bdf0-375deba0e00c

Feed Name: Bleeping Computer

Threat Score
50/100

Date Published: 2025-04-25

Date Updated: 2026-04-20

Author: Lawrence Abrams

...
...

A recent Microsoft Patch Tuesday update creates a SYSTEM-owned C:\inetpub folder; a researcher demonstrated non-admin users can create a junction from C:\inetpub to a file (e.g., C:\Windows\system32\notepad.exe) which causes Windows updates to fail with error 0x800F081F, effectively blocking future security updates. Microsoft confirmed the folder creation is intentional and warned not to delete it, rated the reported issue as Moderate, and has not issued an immediate remediation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.