logo

Microsoft patches two actively exploited Defender vulnerabilities.

ID: 58549736-52e4-5008-8f9e-c021f68d951c

STIX ID: report--58549736-52e4-5008-8f9e-c021f68d951c

Feed Name: The CyberWire

Threat Score
75/100

Date Published: 2026-05-21

Date Updated: 2026-05-22

...
...

### Executive Summary Microsoft released patches for two actively exploited Microsoft Defender zero-days (a local privilege escalation CVE-2026-41091 and a denial-of-service CVE-2026-45498); a Europol operation led by France and the Netherlands dismantled First VPN—seizing servers and domains and identifying thousands of users linked to cybercrime including ransomware gangs; and Ukrainian police, with US law enforcement, identified an 18-year-old suspected operator of an infostealer campaign that compromised over 28,000 customer accounts and facilitated about $721,000 in fraudulent purchases.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.