logo

Microsoft’s April 2024 Patch Tuesday includes two actively exploited zero-day vulnerabilities

ID: fc77f7b4-92fb-57aa-8229-37c643fde2dd

STIX ID: report--fc77f7b4-92fb-57aa-8229-37c643fde2dd

Feed Name: Malwarebytes Blog

Threat Score
75/100

Date Published: 2024-04-11

Date Updated: 2026-04-28

...
...

Microsoft's April 2024 Patch Tuesday addresses 149 vulnerabilities, including two zero-days: CVE-2024-26234 (a signed proxy-driver/backdoor used to monitor/intercept traffic — exploitation detected) and CVE-2024-29988 (a SmartScreen bypass with functional exploit code delivered via zipped files). The bulletin highlights high-impact components (e.g., SQL Server, Windows Remote Access Connection Manager), and notes synchronized patching by other vendors such as Android, Chrome, and SAP.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.