<?xml version="1.0"?>
<rss version="2.0" xmlns:media="http://search.yahoo.com/mrss/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:neowin="https://www.neowin.net/">
	<channel>
		<title>Neowin News Feed for: Vulnerability</title>
		<link>https://www.neowin.net/news/tag/vulnerability/</link>
        <atom:link href="https://www.neowin.net/news/rss/vulnerability/" rel="self" type="application/rss+xml" />
		<description>Neowin News Feed for: Vulnerability</description>
		<language>en-us</language>
		<generator>Neowin Ignition News</generator>
		<managingEditor>editor@neowin.net (Managing Editor)</managingEditor>
		<webMaster>developers@neowin.net (Neowin Developers)</webMaster>
		<ttl>5</ttl>
		<image>
			<title>Neowin.net</title>
			<url>https://www.neowin.net/images/pegasus/icon.png</url>
			<link>https://www.neowin.net</link>
		</image>
		        <item>
            <title>Exchange Server has a &quot;critical&quot; security bug, but Microsoft does not have a proper fix yet</title>
            <link>https://www.neowin.net/news/exchange-server-has-a-critical-security-bug-but-microsoft-does-not-have-a-proper-fix-yet/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/08/1755024379_1280x720-ghost-white-solid-color-background-fotor-20250812234553_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft warns of a critical Exchange Server flaw that could let attackers hijack browsers through emails, with full fixes locked behind paid support for some. &lt;a href="https://www.neowin.net/news/exchange-server-has-a-critical-security-bug-but-microsoft-does-not-have-a-proper-fix-yet/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 15 May 2026 07:44:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/exchange-server-has-a-critical-security-bug-but-microsoft-does-not-have-a-proper-fix-yet/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/08/1755024379_1280x720-ghost-white-solid-color-background-fotor-20250812234553_story.webp" width="760" height="428" />
            <neowin:tags>#Microsoft #ExchangeServer</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Nightmare-Eclipse drops YellowKey and GreenPlasma exploits for Windows 11</title>
            <link>https://www.neowin.net/news/nightmare-eclipse-drops-yellowkey-and-greenplasma-exploits-for-windows-11/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2026/05/1778737033_591244383-3a843a4b-8daf-4fc9-9d95-26f87b67031b_medium.webp" alt="" /&gt;&lt;/div&gt;Is there a backdoor in BitLocker? A new exploit suggests Microsoft might have left the door open for data access, while a second flaw threatens system security. &lt;a href="https://www.neowin.net/news/nightmare-eclipse-drops-yellowkey-and-greenplasma-exploits-for-windows-11/"&gt;Read more...&lt;/a&gt;</description>
            <author>Paul Hill</author>
            <pubDate>Thu, 14 May 2026 06:08:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/nightmare-eclipse-drops-yellowkey-and-greenplasma-exploits-for-windows-11/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2026/05/1778737033_591244383-3a843a4b-8daf-4fc9-9d95-26f87b67031b_story.webp" width="760" height="428" />
            <neowin:tags>#Windows11 #CyberSecurity</neowin:tags>            <neowin:twitter>@ziks_99</neowin:twitter>        </item>
                <item>
            <title>Windows 11&#039;s controversial Recall is under fire again, while Microsoft denies flaws</title>
            <link>https://www.neowin.net/news/windows-11s-controversial-recall-is-under-fire-again-while-microsoft-denies-flaws/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/04/1745574767_recall_medium.jpg" alt="" /&gt;&lt;/div&gt;Windows 11&amp;#039;s Recall is in hot water again, as a newly released tool shows how to extract all the screenshots and captured data. &lt;a href="https://www.neowin.net/news/windows-11s-controversial-recall-is-under-fire-again-while-microsoft-denies-flaws/"&gt;Read more...&lt;/a&gt;</description>
            <author>Taras Buria</author>
            <pubDate>Wed, 15 Apr 2026 14:50:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/windows-11s-controversial-recall-is-under-fire-again-while-microsoft-denies-flaws/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/04/1745574767_recall_story.jpg" width="760" height="428" />
            <neowin:tags>#Windows11 #Recall #Microsoft</neowin:tags>            <neowin:twitter>@TarasBuria</neowin:twitter>        </item>
                <item>
            <title>Google patches a critical Chrome vulnerability already being exploited in the wild</title>
            <link>https://www.neowin.net/news/google-patches-a-critical-chrome-vulnerability-already-being-exploited-in-the-wild/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2026/02/1771240145_google_chrome_vulnerability_medium.webp" alt="" /&gt;&lt;/div&gt;Google patches a critical Chrome vulnerability already under attack by hackers. Users should update their browsers immediately. &lt;a href="https://www.neowin.net/news/google-patches-a-critical-chrome-vulnerability-already-being-exploited-in-the-wild/"&gt;Read more...&lt;/a&gt;</description>
            <author>Ivan Jenic</author>
            <pubDate>Mon, 16 Feb 2026 11:24:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-patches-a-critical-chrome-vulnerability-already-being-exploited-in-the-wild/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2026/02/1771240145_google_chrome_vulnerability_story.webp" width="760" height="428" />
            <neowin:tags>#google #chrome</neowin:tags>            <neowin:twitter>@ivan_jenic</neowin:twitter>        </item>
                <item>
            <title>Microsoft patches Notepad flaw that could let attackers hijack Windows PCs</title>
            <link>https://www.neowin.net/news/microsoft-patches-notepad-flaw-that-could-let-attackers-hijack-windows-pcs/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2026/02/1770807252_windows_notepad_featured_image_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft just patched a serious vulnerability in Notepad for Windows that could allow hackers to take control of victims&amp;#039; computers. &lt;a href="https://www.neowin.net/news/microsoft-patches-notepad-flaw-that-could-let-attackers-hijack-windows-pcs/"&gt;Read more...&lt;/a&gt;</description>
            <author>Ivan Jenic</author>
            <pubDate>Wed, 11 Feb 2026 11:08:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-patches-notepad-flaw-that-could-let-attackers-hijack-windows-pcs/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2026/02/1770807252_windows_notepad_featured_image_story.webp" width="760" height="428" />
            <neowin:tags>#notepad</neowin:tags>            <neowin:twitter>@ivan_jenic</neowin:twitter>        </item>
                <item>
            <title>Microsoft patches serious Office zero-day vulnerability already being exploited in attacks</title>
            <link>https://www.neowin.net/news/microsoft-patches-serious-office-zero-day-vulnerability-already-being-exploited-in-attacks/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2026/01/1769456126_microsoft_365_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft has finally addressed a serious zero-day vulnerability affecting multiple Office versions. However, not all users will receive it immediately. &lt;a href="https://www.neowin.net/news/microsoft-patches-serious-office-zero-day-vulnerability-already-being-exploited-in-attacks/"&gt;Read more...&lt;/a&gt;</description>
            <author>Ivan Jenic</author>
            <pubDate>Mon, 26 Jan 2026 20:36:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-patches-serious-office-zero-day-vulnerability-already-being-exploited-in-attacks/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2026/01/1769456126_microsoft_365_story.webp" width="760" height="428" />
            <neowin:tags>#microsoft365 #zeroday</neowin:tags>            <neowin:twitter>@ivan_jenic</neowin:twitter>        </item>
                <item>
            <title>Microsoft is securing a Windows Server component, IT admins warned about new configuration</title>
            <link>https://www.neowin.net/news/microsoft-is-securing-a-windows-server-component-it-admins-warned-about-new-configuration/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2024/07/1722170868_windows_server_medium.jpg" alt="" /&gt;&lt;/div&gt;IT admins have been told to follow guidance related to deployments handled via the Windows Deployment Services (WDS). There are only a few months left before a Windows Server feature is disabled. &lt;a href="https://www.neowin.net/news/microsoft-is-securing-a-windows-server-component-it-admins-warned-about-new-configuration/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 14 Jan 2026 16:04:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-is-securing-a-windows-server-component-it-admins-warned-about-new-configuration/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2024/07/1722170868_windows_server_story.jpg" width="760" height="428" />
            <neowin:tags>#WindowsServer #WDS #Microsoft</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft Mesh also impacted by Unity issue, patches rolling out for all games too</title>
            <link>https://www.neowin.net/news/microsoft-mesh-also-impacted-by-unity-issue-patches-rolling-out-for-all-games-too/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/11/1635745353_mesh_for_teams__slide_6_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has published a dedicated advisory for the recent Unity RCE vulnerability, indicating that Mesh applications and dozens of games are impacted. &lt;a href="https://www.neowin.net/news/microsoft-mesh-also-impacted-by-unity-issue-patches-rolling-out-for-all-games-too/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Mon, 06 Oct 2025 17:28:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-mesh-also-impacted-by-unity-issue-patches-rolling-out-for-all-games-too/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/11/1635745353_mesh_for_teams__slide_6_story.jpg" width="760" height="428" />
            <neowin:tags>#MicrosoftMesh #Unity</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>WhatsApp just fixed a nightmare hack for iPhones and Macs</title>
            <link>https://www.neowin.net/news/whatsapp-just-fixed-a-nightmare-hack-for-iphones-and-macs/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/08/1756494351_1280x720-ghost-white-solid-color-background-fotor-20250830052_medium.webp" alt="" /&gt;&lt;/div&gt;WhatsApp has recently fixed a rather dangerous vulnerability in iOS and macOS that was allowing hackers to steal data without any interaction from the user. &lt;a href="https://www.neowin.net/news/whatsapp-just-fixed-a-nightmare-hack-for-iphones-and-macs/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 29 Aug 2025 19:16:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/whatsapp-just-fixed-a-nightmare-hack-for-iphones-and-macs/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/08/1756494351_1280x720-ghost-white-solid-color-background-fotor-20250830052_story.webp" width="760" height="428" />
            <neowin:tags>#WhatsApp #iOS #macOS #Apple</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft Copilot&#039;s quiet flaw exposes audit log failures</title>
            <link>https://www.neowin.net/news/microsoft-copilots-quiet-flaw-exposes-audit-log-failures/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/08/1755658119_depositphotos_695790666_l_medium.webp" alt="" /&gt;&lt;/div&gt;A researcher who reported a serious issue to Microsoft related to Copilot messing with audit logs has hit out at the firm for failing to inform customers. &lt;a href="https://www.neowin.net/news/microsoft-copilots-quiet-flaw-exposes-audit-log-failures/"&gt;Read more...&lt;/a&gt;</description>
            <author>Paul Hill</author>
            <pubDate>Wed, 20 Aug 2025 03:22:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-copilots-quiet-flaw-exposes-audit-log-failures/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/08/1755658119_depositphotos_695790666_l_story.webp" width="760" height="428" />
            <neowin:tags>#Microsoft #Copilot #AuditLogs</neowin:tags>            <neowin:twitter>@ziks_99</neowin:twitter>        </item>
                <item>
            <title>Microsoft rolls out August 2025 security patches for Exchange Server</title>
            <link>https://www.neowin.net/news/microsoft-rolls-out-august-2025-security-patches-for-exchange-server/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/08/1755024379_1280x720-ghost-white-solid-color-background-fotor-20250812234553_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft has released August 2025 Security Updates (SUs) for Exchange Server deployments, containing fixes for the recent, high-severity CVE-2025-53786 flaw. &lt;a href="https://www.neowin.net/news/microsoft-rolls-out-august-2025-security-patches-for-exchange-server/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 12 Aug 2025 19:10:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-rolls-out-august-2025-security-patches-for-exchange-server/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/08/1755024379_1280x720-ghost-white-solid-color-background-fotor-20250812234553_story.webp" width="760" height="428" />
            <neowin:tags>#Microsoft #ExchangeServer</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Researcher exposes Microsoft&#039;s flawed code that lets attackers access files on your computer</title>
            <link>https://www.neowin.net/news/researcher-exposes-microsofts-flawed-code-that-lets-attackers-access-files-on-your-computer/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/03/1741006028_m_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft rolled out the NLWeb framework at Build 2025. Now, a new report shows it can be exploited to gain unauthorized file access. &lt;a href="https://www.neowin.net/news/researcher-exposes-microsofts-flawed-code-that-lets-attackers-access-files-on-your-computer/"&gt;Read more...&lt;/a&gt;</description>
            <author>David Uzondu</author>
            <pubDate>Wed, 06 Aug 2025 13:34:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/researcher-exposes-microsofts-flawed-code-that-lets-attackers-access-files-on-your-computer/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/03/1741006028_m_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #NLWeb</neowin:tags>                    </item>
                <item>
            <title>Millions of Dell PCs have a security flaw, update now</title>
            <link>https://www.neowin.net/news/millions-of-dell-pcs-have-a-security-flaw-update-now/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/04/1618597794_i9_medium.jpg" alt="" /&gt;&lt;/div&gt;A security flaw in ControlVault3 exposes millions of Dell PCs to high-severity threats, customers are advised to patch as soon as possible. &lt;a href="https://www.neowin.net/news/millions-of-dell-pcs-have-a-security-flaw-update-now/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 06 Aug 2025 02:10:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/millions-of-dell-pcs-have-a-security-flaw-update-now/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/04/1618597794_i9_story.jpg" width="760" height="428" />
            <neowin:tags>#Dell #Broadcom #Vulnerability</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google Project Zero exposes security flaw in libxslt library used in GNOME applications</title>
            <link>https://www.neowin.net/news/google-project-zero-exposes-security-flaw-in-libxslt-library-used-in-gnome-applications/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/07/1751908525_gnome_medium.webp" alt="" /&gt;&lt;/div&gt;Google&amp;#039;s Project Zero team has publicly disclosed a UAF flaw in the popular libxslt library following GNOME&amp;#039;s inability to fix it within 90 days of private reporting. &lt;a href="https://www.neowin.net/news/google-project-zero-exposes-security-flaw-in-libxslt-library-used-in-gnome-applications/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 05 Aug 2025 13:36:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-project-zero-exposes-security-flaw-in-libxslt-library-used-in-gnome-applications/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/07/1751908525_gnome_story.webp" width="760" height="428" />
            <neowin:tags>#GoogleProjectZero #GNOME #KDE</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Hackers actively exploiting unpatched Microsoft SharePoint vulnerability CVE-2025-53770</title>
            <link>https://www.neowin.net/news/hackers-actively-exploiting-unpatched-microsoft-sharepoint-vulnerability-cve-2025-53770/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/05/1747083928_sharepoint_medium.jpg" alt="" /&gt;&lt;/div&gt;A new critical vulnerability, CVE-2025-53770 (ToolShell), is being actively exploited to attack unpatched on-premises Microsoft SharePoint Servers. &lt;a href="https://www.neowin.net/news/hackers-actively-exploiting-unpatched-microsoft-sharepoint-vulnerability-cve-2025-53770/"&gt;Read more...&lt;/a&gt;</description>
            <author>Pradeep Viswanathan</author>
            <pubDate>Mon, 21 Jul 2025 04:44:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/hackers-actively-exploiting-unpatched-microsoft-sharepoint-vulnerability-cve-2025-53770/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/05/1747083928_sharepoint_story.jpg" width="760" height="428" />
            <neowin:tags>#SharePoint #Vulnerability</neowin:tags>            <neowin:twitter>@pradeepviswav</neowin:twitter>        </item>
                <item>
            <title>A 13-year-old prodigy helped improve the security of Microsoft products</title>
            <link>https://www.neowin.net/news/a-13-year-old-prodigy-helped-improve-the-security-of-microsoft-products/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/07/1751451627_1280x720-ghost-white-solid-color-background-fotor-20250702151924_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft has shared the story of a child prodigy, with whom the company has been working since he was 13 years old, to improve the security of its products. &lt;a href="https://www.neowin.net/news/a-13-year-old-prodigy-helped-improve-the-security-of-microsoft-products/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 02 Jul 2025 10:28:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/a-13-year-old-prodigy-helped-improve-the-security-of-microsoft-products/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/07/1751451627_1280x720-ghost-white-solid-color-background-fotor-20250702151924_story.webp" width="760" height="428" />
            <neowin:tags>#MSRC #Security #Vulnerability</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Ubuntu&#039;s apport affected by core dump vulnerability, here&#039;s how to patch</title>
            <link>https://www.neowin.net/news/ubuntus-apport-affected-by-core-dump-vulnerability-heres-how-to-patch/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/05/1746170544_1647455145_new-ubuntu-logo_1_medium.jpg" alt="" /&gt;&lt;/div&gt;Ubuntu&amp;#039;s apport has been discovered to contain a vulnerability that could put your sensitive information at risk. Here&amp;#039;s how to patch your system. &lt;a href="https://www.neowin.net/news/ubuntus-apport-affected-by-core-dump-vulnerability-heres-how-to-patch/"&gt;Read more...&lt;/a&gt;</description>
            <author>Paul Hill</author>
            <pubDate>Sat, 31 May 2025 14:44:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/ubuntus-apport-affected-by-core-dump-vulnerability-heres-how-to-patch/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/05/1746170544_1647455145_new-ubuntu-logo_1_story.jpg" width="760" height="428" />
            <neowin:tags>#Ubuntu #Linux</neowin:tags>            <neowin:twitter>@ziks_99</neowin:twitter>        </item>
                <item>
            <title>Microsoft releases detailed FAQs about XZ Utils vulnerability in Linux systems</title>
            <link>https://www.neowin.net/news/microsoft-releases-detailed-faqs-about-xz-utils-vulnerability-in-linux-systems/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/03/1616330026_microsoftdefender_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has released a detailed set of FAQs and recommendations for users who are affected by the XZ Utils vulnerability which allows a threat actor to exploit SSH operations and get remote access.  &lt;a href="https://www.neowin.net/news/microsoft-releases-detailed-faqs-about-xz-utils-vulnerability-in-linux-systems/"&gt;Read more...&lt;/a&gt;</description>
            <author>Karthik Mudaliar</author>
            <pubDate>Tue, 02 Apr 2024 05:30:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-releases-detailed-faqs-about-xz-utils-vulnerability-in-linux-systems/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/03/1616330026_microsoftdefender_story.jpg" width="760" height="428" />
            <neowin:tags>#XZUtils #Linux #Vulnerability</neowin:tags>            <neowin:twitter>@heykarthikm</neowin:twitter>        </item>
                <item>
            <title>Microsoft Edge gets fixes for zero-day vulnerabilities exploited in the wild</title>
            <link>https://www.neowin.net/news/microsoft-edge-gets-fixes-for-zero-day-vulnerabilities-exploited-in-the-wild/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2023/07/1688678381_edge-hero-scaled_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft Edge 123 (and 122 in the Extended Stable Channel), which was recently re-released in the Stable Channel, received fixes for four zero-day vulnerabilities exploited in the wild. &lt;a href="https://www.neowin.net/news/microsoft-edge-gets-fixes-for-zero-day-vulnerabilities-exploited-in-the-wild/"&gt;Read more...&lt;/a&gt;</description>
            <author>Taras Buria</author>
            <pubDate>Fri, 29 Mar 2024 11:16:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-edge-gets-fixes-for-zero-day-vulnerabilities-exploited-in-the-wild/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2023/07/1688678381_edge-hero-scaled_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #Edge #Edge123</neowin:tags>            <neowin:twitter>@TarasBuria</neowin:twitter>        </item>
                <item>
            <title>Three million Saflok locks can be opened by crooks due to 36-year-old security holes</title>
            <link>https://www.neowin.net/news/three-million-saflok-locks-can-be-opened-by-crooks-due-to-36-year-old-security-holes/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2024/03/1711146092_unsaflok_ico_medium.jpg" alt="" /&gt;&lt;/div&gt;Common electronic locks used in hotels still suffer from vulnerabilities reported to the manufacturer in 2022. It allows the hackers to forge universal keycards that can open any door. &lt;a href="https://www.neowin.net/news/three-million-saflok-locks-can-be-opened-by-crooks-due-to-36-year-old-security-holes/"&gt;Read more...&lt;/a&gt;</description>
            <author>Martin Hodás</author>
            <pubDate>Sat, 23 Mar 2024 00:00:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/three-million-saflok-locks-can-be-opened-by-crooks-due-to-36-year-old-security-holes/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2024/03/1711146092_unsaflok_ico_story.jpg" width="760" height="428" />
            <neowin:tags>#Dormakaba #Saflok #Exploit</neowin:tags>            <neowin:twitter>@Hody_MH11</neowin:twitter>        </item>
                <item>
            <title>European Court of Human Rights rules against government backdoors in end-to-end encryption</title>
            <link>https://www.neowin.net/news/european-court-of-human-rights-rules-against-government-backdoors-in-end-to-end-encryption/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2024/02/1708140612_echr_ruling_e2e_ico_medium.jpg" alt="" /&gt;&lt;/div&gt;The discussion about law enforcers&amp;#039; access to end-to-end encrypted communication reached a key milestone in Europe. A court says, essentially, that implementing such a measure would be illegal. &lt;a href="https://www.neowin.net/news/european-court-of-human-rights-rules-against-government-backdoors-in-end-to-end-encryption/"&gt;Read more...&lt;/a&gt;</description>
            <author>Martin Hodás</author>
            <pubDate>Sat, 17 Feb 2024 07:20:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/european-court-of-human-rights-rules-against-government-backdoors-in-end-to-end-encryption/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2024/02/1708140612_echr_ruling_e2e_ico_story.jpg" width="760" height="428" />
            <neowin:tags>#E2E #Encryption #Backdoor</neowin:tags>            <neowin:twitter>@Hody_MH11</neowin:twitter>        </item>
                <item>
            <title>PSA: Update your WinRAR copy to fix an actively exploited security vulnerability</title>
            <link>https://www.neowin.net/news/psa-update-your-winrar-copy-to-fix-an-actively-exploited-security-vulnerability/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2023/10/1697644377_winrar_broken_medium.jpg" alt="" /&gt;&lt;/div&gt;Here is a heads-up for WinRAR users: It is time to update the application to fix a vulnerability that numerous government-backed hacker groups have exploited since the beginning of the year. &lt;a href="https://www.neowin.net/news/psa-update-your-winrar-copy-to-fix-an-actively-exploited-security-vulnerability/"&gt;Read more...&lt;/a&gt;</description>
            <author>Taras Buria</author>
            <pubDate>Wed, 18 Oct 2023 16:30:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/psa-update-your-winrar-copy-to-fix-an-actively-exploited-security-vulnerability/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2023/10/1697644377_winrar_broken_story.jpg" width="760" height="428" />
            <neowin:tags>#WinRAR #Vulnerability</neowin:tags>            <neowin:twitter>@TarasBuria</neowin:twitter>        </item>
                <item>
            <title>GitHub now lets researchers privately report vulnerabilities to project maintainers</title>
            <link>https://www.neowin.net/news/github-now-lets-researchers-privately-report-vulnerabilities-to-project-maintainers/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2023/04/1681944294_private-vulnerability-reporting-header_medium.jpg" alt="" /&gt;&lt;/div&gt;GitHub users will now be able to privately report vulnerabilities to code maintainers. The feature was in public beta since last year but has been graduated to general availability. &lt;a href="https://www.neowin.net/news/github-now-lets-researchers-privately-report-vulnerabilities-to-project-maintainers/"&gt;Read more...&lt;/a&gt;</description>
            <author>Paul Hill</author>
            <pubDate>Wed, 19 Apr 2023 22:50:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/github-now-lets-researchers-privately-report-vulnerabilities-to-project-maintainers/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2023/04/1681944294_private-vulnerability-reporting-header_story.jpg" width="760" height="428" />
            <neowin:tags>#GitHub #PrivateReporting</neowin:tags>            <neowin:twitter>@ziks_99</neowin:twitter>        </item>
                <item>
            <title>Google discloses CentOS Linux kernel vulnerabilities following failure to issue timely fixes</title>
            <link>https://www.neowin.net/news/google-discloses-centos-linux-kernel-vulnerabilities-following-failure-to-issue-timely-fixes/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2023/03/1679568899_fotor_2023-3-23_15_53_55_medium.jpg" alt="" /&gt;&lt;/div&gt;Google&amp;#039;s Project Zero security team has publicly disclosed multiple flaws in certain Linux kernels and distros following Red Hat&amp;#039;s inability to fix them within the 90-day deadline assigned by Google. &lt;a href="https://www.neowin.net/news/google-discloses-centos-linux-kernel-vulnerabilities-following-failure-to-issue-timely-fixes/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 23 Mar 2023 11:18:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-discloses-centos-linux-kernel-vulnerabilities-following-failure-to-issue-timely-fixes/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2023/03/1679568899_fotor_2023-3-23_15_53_55_story.jpg" width="760" height="428" />
            <neowin:tags>#Google #CentOS #RedHat #Linux</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Beware: Windows 11 system requirement Secure Boot broken on MSI motherboards, full list here</title>
            <link>https://www.neowin.net/news/beware-windows-11-system-requirement-secure-boot-broken-on-msi-motherboards-full-list-here/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/08/1660257885_secure_boot_vulnerability_medium.jpg" alt="" /&gt;&lt;/div&gt;MSI motherboards, from both Intel and AMD, have been vulnerable due to a broken Secure Boot firmware setting issue. The bug would allow potentially malicious files to boot into an affected system. &lt;a href="https://www.neowin.net/news/beware-windows-11-system-requirement-secure-boot-broken-on-msi-motherboards-full-list-here/"&gt;Read more...&lt;/a&gt;</description>
            <author>Sayan Sen</author>
            <pubDate>Tue, 17 Jan 2023 11:08:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/beware-windows-11-system-requirement-secure-boot-broken-on-msi-motherboards-full-list-here/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/08/1660257885_secure_boot_vulnerability_story.jpg" width="760" height="428" />
            <neowin:tags>#Windows11 #UEFI #BIOS #Bug</neowin:tags>            <neowin:twitter>@ssc_combater007</neowin:twitter>        </item>
                <item>
            <title>Latest Exchange Server updates improve security of PowerShell payloads and add a known issue</title>
            <link>https://www.neowin.net/news/latest-exchange-server-updates-improve-security-of-powershell-payloads-and-add-a-known-issue/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2015/07/microsoft-exchange-01_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has rolled out January 2023&amp;#039;s Security Updates (SUs) for support versions of Exchange Server. They include better security for PowerShell payloads, along with a known bug for OWA. &lt;a href="https://www.neowin.net/news/latest-exchange-server-updates-improve-security-of-powershell-payloads-and-add-a-known-issue/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 11 Jan 2023 08:44:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/latest-exchange-server-updates-improve-security-of-powershell-payloads-and-add-a-known-issue/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2015/07/microsoft-exchange-01_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #ExchangeServer</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Security researcher bags $107K bounty for hacking Google Home to spy on you</title>
            <link>https://www.neowin.net/news/security-researcher-bags-107k-bounty-for-hacking-google-home-to-spy-on-you/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2020/09/1601326120_pexels-john-tekeridis-1072851_medium.jpg" alt="" /&gt;&lt;/div&gt;A security researcher recently discovered serious vulnerabilities in Google Home smart speakers that could allow an attacker to install a &amp;quot;backdoor&amp;quot; account on the device and gain remote access.  &lt;a href="https://www.neowin.net/news/security-researcher-bags-107k-bounty-for-hacking-google-home-to-spy-on-you/"&gt;Read more...&lt;/a&gt;</description>
            <author>Karthik Mudaliar</author>
            <pubDate>Fri, 30 Dec 2022 20:32:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/security-researcher-bags-107k-bounty-for-hacking-google-home-to-spy-on-you/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2020/09/1601326120_pexels-john-tekeridis-1072851_story.jpg" width="760" height="428" />
            <neowin:tags>#GoogleHome #Security #Flaw</neowin:tags>            <neowin:twitter>@heykarthikm</neowin:twitter>        </item>
                <item>
            <title>Google Chrome is by far the most vulnerable browser in 2022: Study</title>
            <link>https://www.neowin.net/news/google-chrome-is-by-far-the-most-vulnerable-browser-in-2022-study/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/09/1662028526_browsers_medium.jpg" alt="" /&gt;&lt;/div&gt;A new study has found that Google Chrome is the browser with the greatest number of security vulnerabilities in 2022. It is also the only browser with newly discovered vulnerabilities in October. &lt;a href="https://www.neowin.net/news/google-chrome-is-by-far-the-most-vulnerable-browser-in-2022-study/"&gt;Read more...&lt;/a&gt;</description>
            <author>Justin Luna</author>
            <pubDate>Fri, 07 Oct 2022 07:22:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-chrome-is-by-far-the-most-vulnerable-browser-in-2022-study/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/09/1662028526_browsers_story.jpg" width="760" height="428" />
            <neowin:tags>#GoogleChrome #Firefox #Edge</neowin:tags>            <neowin:twitter>@_justinluna</neowin:twitter>        </item>
                <item>
            <title>The PlayStation 5 has been jailbroken but the exploit is quite limited</title>
            <link>https://www.neowin.net/news/the-playstation-5-has-been-jailbroken-but-the-exploit-is-quite-limited/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/03/1648035228_ps5_medium.jpg" alt="" /&gt;&lt;/div&gt;Modders have managed to jailbreak the PlayStation 5 using a WebKit exploit in an old PS5 firmware. The exploit is quite limited at this point, but work will likely continue to make it more useful. &lt;a href="https://www.neowin.net/news/the-playstation-5-has-been-jailbroken-but-the-exploit-is-quite-limited/"&gt;Read more...&lt;/a&gt;</description>
            <author>Paul Hill</author>
            <pubDate>Mon, 03 Oct 2022 16:22:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/the-playstation-5-has-been-jailbroken-but-the-exploit-is-quite-limited/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/03/1648035228_ps5_story.jpg" width="760" height="428" />
            <neowin:tags>#PlayStation5 #Jailbreak</neowin:tags>            <neowin:twitter>@ziks_99</neowin:twitter>        </item>
                <item>
            <title>Microsoft issues advisory about two 0-day vulnerabilities in Exchange Server, no fix yet</title>
            <link>https://www.neowin.net/news/microsoft-issues-advisory-about-two-0-day-vulnerabilities-in-exchange-server-no-fix-yet/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/03/1615131777_eo4_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has issued an advisory about two 0-day vulnerabilities affecting on-premises installations of Exchange Server. Unfortunately, no fix is available yet but there are a couple of mitigations. &lt;a href="https://www.neowin.net/news/microsoft-issues-advisory-about-two-0-day-vulnerabilities-in-exchange-server-no-fix-yet/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 30 Sep 2022 13:42:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-issues-advisory-about-two-0-day-vulnerabilities-in-exchange-server-no-fix-yet/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/03/1615131777_eo4_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #ExchangeServer</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>TikTok&#039;s Android app had a vulnerability giving attackers undetectable access to accounts</title>
            <link>https://www.neowin.net/news/tiktoks-android-app-had-a-vulnerability-giving-attackers-undetectable-access-to-accounts/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/07/1626294442_tiktok_logo_medium.jpg" alt="" /&gt;&lt;/div&gt;The Microsoft 365 Defender Research Team has today disclosed a high-severity vulnerability in the Android version of TikTok, allowing attackers to access user accounts with a single click. &lt;a href="https://www.neowin.net/news/tiktoks-android-app-had-a-vulnerability-giving-attackers-undetectable-access-to-accounts/"&gt;Read more...&lt;/a&gt;</description>
            <author>Steve Bennett</author>
            <pubDate>Wed, 31 Aug 2022 17:24:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/tiktoks-android-app-had-a-vulnerability-giving-attackers-undetectable-access-to-accounts/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/07/1626294442_tiktok_logo_story.jpg" width="760" height="428" />
            <neowin:tags>#TikTok #Android #Security</neowin:tags>                    </item>
                <item>
            <title>Janet Jackson song is now an official exploit for Windows PCs</title>
            <link>https://www.neowin.net/news/janet-jackson-song-is-now-an-official-exploit-for-windows-pcs/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/08/1660829511_windows-xp_medium.jpg" alt="" /&gt;&lt;/div&gt;The MITRE Corporation has officially declared that Janet Jackson&amp;#039;s music video of Rhythm Nation is an exploit. It has assigned it a CVE ID nearly two decades after its initial discovery. &lt;a href="https://www.neowin.net/news/janet-jackson-song-is-now-an-official-exploit-for-windows-pcs/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 18 Aug 2022 13:36:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/janet-jackson-song-is-now-an-official-exploit-for-windows-pcs/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/08/1660829511_windows-xp_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #WindowsXP</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Signal phone numbers of 1,900 users exposed in Twilio phishing attack</title>
            <link>https://www.neowin.net/news/signal-phone-numbers-of-1900-users-exposed-in-twilio-phishing-attack/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/08/1660647693_1660628868_signal-app_medium.jpg" alt="" /&gt;&lt;/div&gt;Signal has reported a recent phishing attack on its verification service provider, Twilio, which has exposed approximately 1,900 users registered to a Signal account. Twilio has shut down the attack. &lt;a href="https://www.neowin.net/news/signal-phone-numbers-of-1900-users-exposed-in-twilio-phishing-attack/"&gt;Read more...&lt;/a&gt;</description>
            <author>Hemant Saxena</author>
            <pubDate>Tue, 16 Aug 2022 06:36:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/signal-phone-numbers-of-1900-users-exposed-in-twilio-phishing-attack/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/08/1660647693_1660628868_signal-app_story.jpg" width="760" height="428" />
            <neowin:tags>#SignalApp #SignalPhishing</neowin:tags>            <neowin:twitter>@HeMaNt8711</neowin:twitter>        </item>
                <item>
            <title>Google Chrome receives emergency security update for 0-day exploit</title>
            <link>https://www.neowin.net/news/google-chrome-receives-emergency-security-update-for-0-day-exploit/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/07/1657002437_gjevgn_(24)_medium.jpg" alt="" /&gt;&lt;/div&gt;Google has rolled out security updates for Chrome across various channels to fix a handful of issues, including one 0-day exploit. Details of the problem are private for now but it has high severity. &lt;a href="https://www.neowin.net/news/google-chrome-receives-emergency-security-update-for-0-day-exploit/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 05 Jul 2022 06:40:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-chrome-receives-emergency-security-update-for-0-day-exploit/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/07/1657002437_gjevgn_(24)_story.jpg" width="760" height="428" />
            <neowin:tags>#GoogleChrome #0Day</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Open-Source code is unsafe and risky because of its rampant use, claims report</title>
            <link>https://www.neowin.net/news/open-source-code-is-unsafe-and-risky-because-of-its-rampant-use-claims-report/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2016/07/1468114646_open-source_medium.jpg" alt="" /&gt;&lt;/div&gt;Open-Source code is quite popular as it reduces the software development cycle. However, rampant use of the same is increasing security concerns. Companies must have some policy to deal with risks. &lt;a href="https://www.neowin.net/news/open-source-code-is-unsafe-and-risky-because-of-its-rampant-use-claims-report/"&gt;Read more...&lt;/a&gt;</description>
            <author>Alap Naik Desai</author>
            <pubDate>Tue, 21 Jun 2022 18:16:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/open-source-code-is-unsafe-and-risky-because-of-its-rampant-use-claims-report/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2016/07/1468114646_open-source_story.jpg" width="760" height="428" />
            <neowin:tags>#OpenSource #Risk #Security</neowin:tags>            <neowin:twitter>@alap1983</neowin:twitter>        </item>
                <item>
            <title>June Patch Tuesday: Microsoft fixes Follina vulnerability but not DogWalk</title>
            <link>https://www.neowin.net/news/june-patch-tuesday-microsoft-fixes-follina-vulnerability-but-not-dogwalk/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/05/1653980942_capture_(13)_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft&amp;#039;s latest Patch Tuesday updates - released yesterday - fix a lot of recently publicized security issues like Follina, however, DogWalk remains unpatched as Microsoft continues to downplay it. &lt;a href="https://www.neowin.net/news/june-patch-tuesday-microsoft-fixes-follina-vulnerability-but-not-dogwalk/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 15 Jun 2022 09:16:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/june-patch-tuesday-microsoft-fixes-follina-vulnerability-but-not-dogwalk/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/05/1653980942_capture_(13)_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #DogWalk #Follina</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Atlassian: There is a critical RCE flaw in Confluence, block internet access ASAP [Update]</title>
            <link>https://www.neowin.net/news/atlassian-there-is-a-critical-rce-flaw-in-confluence-so-block-internet-access-asap/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/06/1654246316_1583572366_product_36559_product_shots2_medium.jpg" alt="" /&gt;&lt;/div&gt;Some IT admins may be in for a scare this weekend as Atlassian has warned of a critical RCE flaw affecting all Confluence Server and Data Center versions. Internet access should be restricted ASAP. &lt;a href="https://www.neowin.net/news/atlassian-there-is-a-critical-rce-flaw-in-confluence-so-block-internet-access-asap/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 03 Jun 2022 08:58:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/atlassian-there-is-a-critical-rce-flaw-in-confluence-so-block-internet-access-asap/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/06/1654246316_1583572366_product_36559_product_shots2_story.jpg" width="760" height="428" />
            <neowin:tags>#Atlassian #Confluence #RCE</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Protocol vulnerability allows launching malicious Windows Search by just opening Word file</title>
            <link>https://www.neowin.net/news/protocol-vulnerability-allows-launching-malicious-windows-search-by-just-opening-word-file/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/06/1654151911_windows_vulnerability_medium.jpg" alt="" /&gt;&lt;/div&gt;A newly discovered zero-day vulnerability in modern Windows versions allows bad actors to launch a Windows Search window and connect to infected directories using a single Word file. &lt;a href="https://www.neowin.net/news/protocol-vulnerability-allows-launching-malicious-windows-search-by-just-opening-word-file/"&gt;Read more...&lt;/a&gt;</description>
            <author>Taras Buria</author>
            <pubDate>Thu, 02 Jun 2022 06:54:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/protocol-vulnerability-allows-launching-malicious-windows-search-by-just-opening-word-file/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/06/1654151911_windows_vulnerability_story.jpg" width="760" height="428" />
            <neowin:tags>#ZeroDay #Windows #Malware</neowin:tags>            <neowin:twitter>@TarasBuria</neowin:twitter>        </item>
                <item>
            <title>CISA: Don&#039;t install Windows Patch Tuesday updates for May on Domain Controllers</title>
            <link>https://www.neowin.net/news/cisa-don039t-install-windows-patch-tuesday-updates-for-may-on-domain-controllers/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2020/10/1604087175_windows_vulnerabiliy2_medium.jpg" alt="" /&gt;&lt;/div&gt;The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is no longer recommending the installation of May Patch Tuesday updates on Domain Controllers because of authentication issues. &lt;a href="https://www.neowin.net/news/cisa-don039t-install-windows-patch-tuesday-updates-for-may-on-domain-controllers/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 17 May 2022 07:06:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/cisa-don039t-install-windows-patch-tuesday-updates-for-may-on-domain-controllers/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2020/10/1604087175_windows_vulnerabiliy2_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #Windows #Security</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft Edge and Google Chrome get emergency update to patch security vulnerability</title>
            <link>https://www.neowin.net/news/microsoft-edge-and-google-chrome-get-emergency-update-to-patch-security-vulnerability/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/03/1648384636_1155041_medium.jpg" alt="" /&gt;&lt;/div&gt;Chromium has received an update to patch a rather mysterious but severe vulnerability in its V8 engine. Both Google and Microsoft have updated their respective browsers but are being very secretive. &lt;a href="https://www.neowin.net/news/microsoft-edge-and-google-chrome-get-emergency-update-to-patch-security-vulnerability/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Sun, 27 Mar 2022 12:42:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-edge-and-google-chrome-get-emergency-update-to-patch-security-vulnerability/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/03/1648384636_1155041_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #Google #Edge #Chrome</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
        	</channel>
</rss>
