<?xml version="1.0"?>
<rss version="2.0" xmlns:media="http://search.yahoo.com/mrss/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:neowin="https://www.neowin.net/">
	<channel>
		<title>Neowin News Feed for: Flaw</title>
		<link>https://www.neowin.net/news/tag/flaw/</link>
        <atom:link href="https://www.neowin.net/news/rss/flaw/" rel="self" type="application/rss+xml" />
		<description>Neowin News Feed for: Flaw</description>
		<language>en-us</language>
		<generator>Neowin Ignition News</generator>
		<managingEditor>editor@neowin.net (Managing Editor)</managingEditor>
		<webMaster>developers@neowin.net (Neowin Developers)</webMaster>
		<ttl>5</ttl>
		<image>
			<title>Neowin.net</title>
			<url>https://www.neowin.net/images/pegasus/icon.png</url>
			<link>https://www.neowin.net</link>
		</image>
		        <item>
            <title>Microsoft releases emergency out-of-band .NET update to patch severe bug</title>
            <link>https://www.neowin.net/news/microsoft-releases-emergency-out-of-band-net-update-to-patch-severe-bug/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2024/03/1711570117_1605027417_microsoft_net_medium.jpg" alt="" /&gt;&lt;/div&gt;A serious flaw in recent .NET builds has forced an urgent patch, with Microsoft warning impacted apps could grant attackers SYSTEM privileges. &lt;a href="https://www.neowin.net/news/microsoft-releases-emergency-out-of-band-net-update-to-patch-severe-bug/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 22 Apr 2026 00:14:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-releases-emergency-out-of-band-net-update-to-patch-severe-bug/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2024/03/1711570117_1605027417_microsoft_net_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #DotNET</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>WhatsApp just fixed a nightmare hack for iPhones and Macs</title>
            <link>https://www.neowin.net/news/whatsapp-just-fixed-a-nightmare-hack-for-iphones-and-macs/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/08/1756494351_1280x720-ghost-white-solid-color-background-fotor-20250830052_medium.webp" alt="" /&gt;&lt;/div&gt;WhatsApp has recently fixed a rather dangerous vulnerability in iOS and macOS that was allowing hackers to steal data without any interaction from the user. &lt;a href="https://www.neowin.net/news/whatsapp-just-fixed-a-nightmare-hack-for-iphones-and-macs/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 29 Aug 2025 19:16:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/whatsapp-just-fixed-a-nightmare-hack-for-iphones-and-macs/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/08/1756494351_1280x720-ghost-white-solid-color-background-fotor-20250830052_story.webp" width="760" height="428" />
            <neowin:tags>#WhatsApp #iOS #macOS #Apple</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google Project Zero exposes security flaw in libxslt library used in GNOME applications</title>
            <link>https://www.neowin.net/news/google-project-zero-exposes-security-flaw-in-libxslt-library-used-in-gnome-applications/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/07/1751908525_gnome_medium.webp" alt="" /&gt;&lt;/div&gt;Google&amp;#039;s Project Zero team has publicly disclosed a UAF flaw in the popular libxslt library following GNOME&amp;#039;s inability to fix it within 90 days of private reporting. &lt;a href="https://www.neowin.net/news/google-project-zero-exposes-security-flaw-in-libxslt-library-used-in-gnome-applications/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 05 Aug 2025 13:36:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-project-zero-exposes-security-flaw-in-libxslt-library-used-in-gnome-applications/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/07/1751908525_gnome_story.webp" width="760" height="428" />
            <neowin:tags>#GoogleProjectZero #GNOME #KDE</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>GitHub abused to host malware and create download links seemingly affiliated with Microsoft</title>
            <link>https://www.neowin.net/news/github-abused-to-host-malware-and-create-download-links-seemingly-affiliated-with-microsoft/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2019/01/1548605883_bugbash_medium.jpg" alt="" /&gt;&lt;/div&gt;File upload logic in GitHub&amp;#039;s comments allows hackers to host malware on the service and abuse trusted developers and companies, such as Microsoft, to create legitimate-looking URLs. &lt;a href="https://www.neowin.net/news/github-abused-to-host-malware-and-create-download-links-seemingly-affiliated-with-microsoft/"&gt;Read more...&lt;/a&gt;</description>
            <author>Martin Hodás</author>
            <pubDate>Mon, 22 Apr 2024 13:50:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/github-abused-to-host-malware-and-create-download-links-seemingly-affiliated-with-microsoft/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2019/01/1548605883_bugbash_story.jpg" width="760" height="428" />
            <neowin:tags>#GitHub #Malware #Impostors</neowin:tags>            <neowin:twitter>@Hody_MH11</neowin:twitter>        </item>
                <item>
            <title>Google discloses CentOS Linux kernel vulnerabilities following failure to issue timely fixes</title>
            <link>https://www.neowin.net/news/google-discloses-centos-linux-kernel-vulnerabilities-following-failure-to-issue-timely-fixes/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2023/03/1679568899_fotor_2023-3-23_15_53_55_medium.jpg" alt="" /&gt;&lt;/div&gt;Google&amp;#039;s Project Zero security team has publicly disclosed multiple flaws in certain Linux kernels and distros following Red Hat&amp;#039;s inability to fix them within the 90-day deadline assigned by Google. &lt;a href="https://www.neowin.net/news/google-discloses-centos-linux-kernel-vulnerabilities-following-failure-to-issue-timely-fixes/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 23 Mar 2023 11:18:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-discloses-centos-linux-kernel-vulnerabilities-following-failure-to-issue-timely-fixes/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2023/03/1679568899_fotor_2023-3-23_15_53_55_story.jpg" width="760" height="428" />
            <neowin:tags>#Google #CentOS #RedHat #Linux</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google announces new Vulnerability Reward Program specifically for open source software</title>
            <link>https://www.neowin.net/news/google-announces-new-vulnerability-reward-program-specifically-for-open-source-software/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/04/1651218816_v6duco_(2)_medium.jpg" alt="" /&gt;&lt;/div&gt;Google has revealed an expansion to its Vulnerability Reward Program (VRP). It is designed to encourage privately reporting security flaws in open source software in exchange for monetary rewards. &lt;a href="https://www.neowin.net/news/google-announces-new-vulnerability-reward-program-specifically-for-open-source-software/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 30 Aug 2022 11:00:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-announces-new-vulnerability-reward-program-specifically-for-open-source-software/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/04/1651218816_v6duco_(2)_story.jpg" width="760" height="428" />
            <neowin:tags>#Google #OSS #Security</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>June Patch Tuesday: Microsoft fixes Follina vulnerability but not DogWalk</title>
            <link>https://www.neowin.net/news/june-patch-tuesday-microsoft-fixes-follina-vulnerability-but-not-dogwalk/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/05/1653980942_capture_(13)_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft&amp;#039;s latest Patch Tuesday updates - released yesterday - fix a lot of recently publicized security issues like Follina, however, DogWalk remains unpatched as Microsoft continues to downplay it. &lt;a href="https://www.neowin.net/news/june-patch-tuesday-microsoft-fixes-follina-vulnerability-but-not-dogwalk/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 15 Jun 2022 09:16:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/june-patch-tuesday-microsoft-fixes-follina-vulnerability-but-not-dogwalk/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/05/1653980942_capture_(13)_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #DogWalk #Follina</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Atlassian: There is a critical RCE flaw in Confluence, block internet access ASAP [Update]</title>
            <link>https://www.neowin.net/news/atlassian-there-is-a-critical-rce-flaw-in-confluence-so-block-internet-access-asap/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/06/1654246316_1583572366_product_36559_product_shots2_medium.jpg" alt="" /&gt;&lt;/div&gt;Some IT admins may be in for a scare this weekend as Atlassian has warned of a critical RCE flaw affecting all Confluence Server and Data Center versions. Internet access should be restricted ASAP. &lt;a href="https://www.neowin.net/news/atlassian-there-is-a-critical-rce-flaw-in-confluence-so-block-internet-access-asap/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 03 Jun 2022 08:58:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/atlassian-there-is-a-critical-rce-flaw-in-confluence-so-block-internet-access-asap/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/06/1654246316_1583572366_product_36559_product_shots2_story.jpg" width="760" height="428" />
            <neowin:tags>#Atlassian #Confluence #RCE</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Protocol vulnerability allows launching malicious Windows Search by just opening Word file</title>
            <link>https://www.neowin.net/news/protocol-vulnerability-allows-launching-malicious-windows-search-by-just-opening-word-file/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/06/1654151911_windows_vulnerability_medium.jpg" alt="" /&gt;&lt;/div&gt;A newly discovered zero-day vulnerability in modern Windows versions allows bad actors to launch a Windows Search window and connect to infected directories using a single Word file. &lt;a href="https://www.neowin.net/news/protocol-vulnerability-allows-launching-malicious-windows-search-by-just-opening-word-file/"&gt;Read more...&lt;/a&gt;</description>
            <author>Taras Buria</author>
            <pubDate>Thu, 02 Jun 2022 06:54:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/protocol-vulnerability-allows-launching-malicious-windows-search-by-just-opening-word-file/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/06/1654151911_windows_vulnerability_story.jpg" width="760" height="428" />
            <neowin:tags>#ZeroDay #Windows #Malware</neowin:tags>            <neowin:twitter>@TarasBuria</neowin:twitter>        </item>
                <item>
            <title>CISA: Don&#039;t install Windows Patch Tuesday updates for May on Domain Controllers</title>
            <link>https://www.neowin.net/news/cisa-don039t-install-windows-patch-tuesday-updates-for-may-on-domain-controllers/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2020/10/1604087175_windows_vulnerabiliy2_medium.jpg" alt="" /&gt;&lt;/div&gt;The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is no longer recommending the installation of May Patch Tuesday updates on Domain Controllers because of authentication issues. &lt;a href="https://www.neowin.net/news/cisa-don039t-install-windows-patch-tuesday-updates-for-may-on-domain-controllers/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 17 May 2022 07:06:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/cisa-don039t-install-windows-patch-tuesday-updates-for-may-on-domain-controllers/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2020/10/1604087175_windows_vulnerabiliy2_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #Windows #Security</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>AutoWarp: Microsoft publishes advisory about critical security hole in Azure Automation</title>
            <link>https://www.neowin.net/news/autowarp-microsoft-publishes-advisory-about-critical-security-hole-in-azure-automation/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/03/1646720658_1621920146_azure_at_build_2021_2a_-_security_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has published details about a security vulnerability dubbed &amp;quot;AutoWarp&amp;quot; in Azure Automation service. It could enable attackers to get access to resources of other Azure customers. &lt;a href="https://www.neowin.net/news/autowarp-microsoft-publishes-advisory-about-critical-security-hole-in-azure-automation/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 08 Mar 2022 06:28:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/autowarp-microsoft-publishes-advisory-about-critical-security-hole-in-azure-automation/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/03/1646720658_1621920146_azure_at_build_2021_2a_-_security_story.jpg" width="760" height="428" />
            <neowin:tags>#MicrosoftAzure #AutoWarp</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google Project Zero detected the most vulnerabilities in Microsoft products recently</title>
            <link>https://www.neowin.net/news/google-project-zero-detected-the-most-vulnerabilities-in-microsoft-products-recently/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2017/03/1488557261_windows-10-hero-wallpaper-2017-01_medium.jpg" alt="" /&gt;&lt;/div&gt;Google&amp;#039;s Project Zero team has shared some interesting stats regarding its findings for the past couple of years today. Interestingly, it found the most security issues in Microsoft products. &lt;a href="https://www.neowin.net/news/google-project-zero-detected-the-most-vulnerabilities-in-microsoft-products-recently/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 10 Feb 2022 17:00:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-project-zero-detected-the-most-vulnerabilities-in-microsoft-products-recently/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2017/03/1488557261_windows-10-hero-wallpaper-2017-01_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #GoogleProjectZero</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Tesla recalls nearly 500,000 Model 3 and Model S units citing engineering flaws</title>
            <link>https://www.neowin.net/news/tesla-recalls-nearly-500000-model-3-and-model-s-units-citing-engineering-flaws/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2017/07/1501286897_screen_shot_2017-07-28_at_5.07.12_pm_medium.jpg" alt="" /&gt;&lt;/div&gt;Tesla has recalled nearly half a million Model 3 and Model S units for exhibiting engineering flaws related to the rearview camera and the front trunk, which can result in accidents in the worst case. &lt;a href="https://www.neowin.net/news/tesla-recalls-nearly-500000-model-3-and-model-s-units-citing-engineering-flaws/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 30 Dec 2021 18:18:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/tesla-recalls-nearly-500000-model-3-and-model-s-units-citing-engineering-flaws/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2017/07/1501286897_screen_shot_2017-07-28_at_5.07.12_pm_story.jpg" width="760" height="428" />
            <neowin:tags>#Tesla #Model3 #ModelS #Recall</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft discovers macOS &quot;Shrootless&quot; vulnerability, patch now available</title>
            <link>https://www.neowin.net/news/microsoft-discovers-macos-shrootless-vulnerability-patch-now-available/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/10/1635478818_shrootless_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has revealed more details about a macOS vulnerability that it discovered and reported to Apple. A patch is now out for OS-level flaw &amp;quot;Shrootless&amp;quot; on macOS Monterey, Catalina, and Big Sur. &lt;a href="https://www.neowin.net/news/microsoft-discovers-macos-shrootless-vulnerability-patch-now-available/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 29 Oct 2021 03:48:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-discovers-macos-shrootless-vulnerability-patch-now-available/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/10/1635478818_shrootless_story.jpg" width="760" height="428" />
            <neowin:tags>#Shrootless #Microsoft #macOS</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft downplays Azure AD design flaw enabling single-factor brute-force attacks [Update]</title>
            <link>https://www.neowin.net/news/microsoft-downplays-azure-ad-design-flaw-enabling-single-factor-brute-force-attacks/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2020/02/1582569573_public_preview_of_azure_ad_support_for_fido2_security_keys_in_hybrid_environments_teaser_medium.jpg" alt="" /&gt;&lt;/div&gt;A security team has issued an advisory about an apparent design flaw which allows single-factor brute-force attack on Azure Active Directory. However, Microsoft says that this is by design. &lt;a href="https://www.neowin.net/news/microsoft-downplays-azure-ad-design-flaw-enabling-single-factor-brute-force-attacks/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 30 Sep 2021 11:10:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-downplays-azure-ad-design-flaw-enabling-single-factor-brute-force-attacks/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2020/02/1582569573_public_preview_of_azure_ad_support_for_fido2_security_keys_in_hybrid_environments_teaser_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #AzureAD</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft&#039;s PrintNightmare patch breaks printing for some... again</title>
            <link>https://www.neowin.net/news/microsofts-printnightmare-patch-breaks-printing-for-some-again/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/07/1626015964_printnightmare_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has recently revealed that a KB update in August&amp;#039;s Patch Tuesday effectively breaks printing for some organizations by repeatedly requiring admin credentials when printing. &lt;a href="https://www.neowin.net/news/microsofts-printnightmare-patch-breaks-printing-for-some-again/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Sat, 18 Sep 2021 12:26:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsofts-printnightmare-patch-breaks-printing-for-some-again/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/07/1626015964_printnightmare_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #PrintNightmare</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft patches security vulnerability allowing data leaks in Azure Container Instances</title>
            <link>https://www.neowin.net/news/microsoft-patches-security-vulnerability-allowing-data-leaks-in-azure-container-instances/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2017/05/1494435946_containersinazure_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has patched a security flaw in the Azure Container Instances services that allowed data to leak across customers using the same clusters. Potentially affected customers have been notified. &lt;a href="https://www.neowin.net/news/microsoft-patches-security-vulnerability-allowing-data-leaks-in-azure-container-instances/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 09 Sep 2021 06:08:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-patches-security-vulnerability-allowing-data-leaks-in-azure-container-instances/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2017/05/1494435946_containersinazure_story.jpg" width="760" height="428" />
            <neowin:tags>#AzureContainerInstances</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>ChaosDB: Major security flaw in Azure Cosmos DB exposed customer data for years</title>
            <link>https://www.neowin.net/news/chaosdb-major-security-flaw-in-azure-cosmos-db-exposed-customer-data-for-years/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/08/1630074879_61281ee6f4b9d5f8833c0be7_blog_image_-_chaos_step_2_medium.jpg" alt="" /&gt;&lt;/div&gt;A major flaw in Azure Cosmos DB has exposed customer data and given admin access to it for the past couple of years. Microsoft has now patched the issue and asked customers to rotate their keys. &lt;a href="https://www.neowin.net/news/chaosdb-major-security-flaw-in-azure-cosmos-db-exposed-customer-data-for-years/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 27 Aug 2021 14:48:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/chaosdb-major-security-flaw-in-azure-cosmos-db-exposed-customer-data-for-years/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/08/1630074879_61281ee6f4b9d5f8833c0be7_blog_image_-_chaos_step_2_story.jpg" width="760" height="428" />
            <neowin:tags>#ChaosDB #AzureCosmosDB</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google Project Zero reveals another Windows elevation of privilege vulnerability [Update]</title>
            <link>https://www.neowin.net/news/google-project-zero-reveals-another-windows-elevation-of-privilege-vulnerability/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2017/03/1488557261_windows-10-hero-wallpaper-2017-01_medium.jpg" alt="" /&gt;&lt;/div&gt;Google Project Zero has disclosed yet another Windows vulnerability that can lead to elevation of privilege. Microsoft had initially stated that it would not resolve it, but is now working on a fix. &lt;a href="https://www.neowin.net/news/google-project-zero-reveals-another-windows-elevation-of-privilege-vulnerability/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 19 Aug 2021 07:58:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-project-zero-reveals-another-windows-elevation-of-privilege-vulnerability/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2017/03/1488557261_windows-10-hero-wallpaper-2017-01_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #GoogleProjectZero</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google discloses new Rowhammer technique that alters memory contents of newer DRAM chips</title>
            <link>https://www.neowin.net/news/google-discloses-new-rowhammer-technique-that-alters-memory-contents-of-newer-dram-chips/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/05/1622002612_imagelikeembed_medium.jpg" alt="" /&gt;&lt;/div&gt;&amp;quot;Half-double&amp;quot; is a Rowhammer exploit which grants access to wider memory addresses on newer DRAM chips. Malicious code can potentially take control of the full system through this hardware bypass. &lt;a href="https://www.neowin.net/news/google-discloses-new-rowhammer-technique-that-alters-memory-contents-of-newer-dram-chips/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 26 May 2021 04:44:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-discloses-new-rowhammer-technique-that-alters-memory-contents-of-newer-dram-chips/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/05/1622002612_imagelikeembed_story.jpg" width="760" height="428" />
            <neowin:tags>#Rowhammer #Halfdouble #DRAM</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft releases security updates for Exchange Server following report by the NSA</title>
            <link>https://www.neowin.net/news/microsoft-releases-security-updates-for-exchange-server-following-report-by-the-nsa/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2015/07/microsoft-exchange-01_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has released a new set of security updates for numerous Exchange Server versions following the discovery of certain security flaws. Exchange Online once again contains protections already. &lt;a href="https://www.neowin.net/news/microsoft-releases-security-updates-for-exchange-server-following-report-by-the-nsa/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 14 Apr 2021 04:56:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-releases-security-updates-for-exchange-server-following-report-by-the-nsa/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2015/07/microsoft-exchange-01_story.jpg" width="760" height="428" />
            <neowin:tags>#ExchangeServer #Microsoft</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google Project Zero discloses high severity elevation of privilege flaw in Windows</title>
            <link>https://www.neowin.net/news/google-project-zero-discloses-high-severity-elevation-of-privilege-flaw-in-windows/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2016/06/windows-logo-hero-main_medium.jpg" alt="" /&gt;&lt;/div&gt;Following multiple delays from Microsoft, Google&amp;#039;s Project Zero security team has disclosed yet another high severity security flaw in Windows. If exploited, it can cause elevation of privilege. &lt;a href="https://www.neowin.net/news/google-project-zero-discloses-high-severity-elevation-of-privilege-flaw-in-windows/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 24 Dec 2020 13:34:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-project-zero-discloses-high-severity-elevation-of-privilege-flaw-in-windows/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2016/06/windows-logo-hero-main_story.jpg" width="760" height="428" />
            <neowin:tags>#GoogleProjectZero #Windows</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google exposes &#039;high&#039; severity flaw in Adreno GPUs following Qualcomm&#039;s botched fix</title>
            <link>https://www.neowin.net/news/google-exposes-high-severity-flaw-in-adreno-gpus-following-qualcomms-botched-fix/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2018/02/1518713936_qualcomm2_medium.jpg" alt="" /&gt;&lt;/div&gt;Following a botched fix by Qualcomm which caused a new kernel privilege escalation bug, Google Project Zero has publicly disclosed details of a high severity security flaw in the Adreno GPU driver. &lt;a href="https://www.neowin.net/news/google-exposes-high-severity-flaw-in-adreno-gpus-following-qualcomms-botched-fix/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 15 Dec 2020 07:52:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-exposes-high-severity-flaw-in-adreno-gpus-following-qualcomms-botched-fix/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2018/02/1518713936_qualcomm2_story.jpg" width="760" height="428" />
            <neowin:tags>#Qualcomm #Adreno #GPZ #Security</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>GitHub finally fixes &#039;high&#039; severity security flaw reported by Google Project Zero</title>
            <link>https://www.neowin.net/news/github-finally-fixes-high-severity-security-flaw-reported-by-google-project-zero/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2020/11/1605554372_octicons-logo-github_medium.jpg" alt="" /&gt;&lt;/div&gt;The &amp;quot;high&amp;quot; severity security flaw in GitHub publicly disclosed by Google&amp;#039;s Project Zero team earlier this month has finally been patched. The security team has validated the fix and closed it. &lt;a href="https://www.neowin.net/news/github-finally-fixes-high-severity-security-flaw-reported-by-google-project-zero/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Sat, 21 Nov 2020 06:44:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/github-finally-fixes-high-severity-security-flaw-reported-by-google-project-zero/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2020/11/1605554372_octicons-logo-github_story.jpg" width="760" height="428" />
            <neowin:tags>#GitHub #GoogleProjectZero</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google discloses &#039;high&#039; severity security flaw in GitHub</title>
            <link>https://www.neowin.net/news/google-discloses-high-severity-security-flaw-in-github/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2019/01/1548932283_github_medium.jpg" alt="" /&gt;&lt;/div&gt;Google&amp;#039;s Project Zero team has disclosed a &amp;quot;high&amp;quot; severity security flaw in GitHub following the latter&amp;#039;s inability to provide a fix in the 104 days - which includes a grace period - allotted to it. &lt;a href="https://www.neowin.net/news/google-discloses-high-severity-security-flaw-in-github/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 03 Nov 2020 06:08:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-discloses-high-severity-security-flaw-in-github/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2019/01/1548932283_github_story.jpg" width="760" height="428" />
            <neowin:tags>#Google #GitHub #Microsoft</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft apparently just fixed a Windows security flaw first reported to it in 2018</title>
            <link>https://www.neowin.net/news/microsoft-apparently-just-fixed-a-windows-security-flaw-first-reported-to-it-in-2018/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2015/08/2015-08-10-image_medium.jpg" alt="" /&gt;&lt;/div&gt;A new report has emerged claiming that Microsoft fixed a significant security vulnerability in various versions of Windows, even though a Google-owned service disclosed it to Microsoft in 2018. &lt;a href="https://www.neowin.net/news/microsoft-apparently-just-fixed-a-windows-security-flaw-first-reported-to-it-in-2018/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Mon, 17 Aug 2020 08:28:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-apparently-just-fixed-a-windows-security-flaw-first-reported-to-it-in-2018/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2015/08/2015-08-10-image_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #Windows #Security</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google discloses &#039;medium&#039; severity flaw in Windows following Microsoft&#039;s incomplete fix</title>
            <link>https://www.neowin.net/news/google-discloses-medium-severity-flaw-in-windows-following-microsofts-incomplete-fix/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2014/08/windows-dark-icon-08_medium.jpg" alt="" /&gt;&lt;/div&gt;Google&amp;#039;s Project Zero team has publicly revealed yet another security flaw in Windows which allows elevation of privilege, claiming that Microsoft&amp;#039;s fix is incomplete and does not resolve the issue. &lt;a href="https://www.neowin.net/news/google-discloses-medium-severity-flaw-in-windows-following-microsofts-incomplete-fix/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 12 Aug 2020 05:42:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-discloses-medium-severity-flaw-in-windows-following-microsofts-incomplete-fix/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2014/08/windows-dark-icon-08_story.jpg" width="760" height="428" />
            <neowin:tags>#Google #Microsoft #Security</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Google reveals exploits for five interactionless security flaws in iOS</title>
            <link>https://www.neowin.net/news/google-reveals-exploits-for-five-interactionless-security-flaws-in-ios/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2018/11/1543476286_cybersecurity_medium.jpg" alt="" /&gt;&lt;/div&gt;Google&amp;#039;s Project Zero members have disclosed five security flaws in iOS, four of which have been fixed by Apple in iOS 12.4. However, one of these still hasn&amp;#039;t fully been patched yet. &lt;a href="https://www.neowin.net/news/google-reveals-exploits-for-five-interactionless-security-flaws-in-ios/"&gt;Read more...&lt;/a&gt;</description>
            <author>Hamza Jawad </author>
            <pubDate>Tue, 30 Jul 2019 14:08:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-reveals-exploits-for-five-interactionless-security-flaws-in-ios/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2018/11/1543476286_cybersecurity_story.jpg" width="760" height="428" />
            <neowin:tags>#iOS #security #projectzero</neowin:tags>            <neowin:twitter>@HamzaJawad98</neowin:twitter>        </item>
                <item>
            <title>Google reveals &quot;high severity&quot; flaw in macOS kernel</title>
            <link>https://www.neowin.net/news/google-reveals-high-severity-flaw-in-macos-kernel/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2017/10/1508182447_macos_medium.jpg" alt="" /&gt;&lt;/div&gt;Google&amp;#039;s Project Zero has exposed a &amp;quot;high severity&amp;quot; flaw in macOS&amp;#039; kernel XNU - which apparently has issues in its implementation of copy-on-write behavior - after Apple failed to fix it in 90 days. &lt;a href="https://www.neowin.net/news/google-reveals-high-severity-flaw-in-macos-kernel/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Sun, 03 Mar 2019 08:12:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-reveals-high-severity-flaw-in-macos-kernel/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2017/10/1508182447_macos_story.jpg" width="760" height="428" />
            <neowin:tags>#Google #macOS #Apple #XNU</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Apple apologizes for FaceTime bug, fix coming next week</title>
            <link>https://www.neowin.net/news/apple-apologizes-for-facetime-bug-fix-coming-next-week/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2015/02/modernfamilyconnectionlost_medium.jpg" alt="" /&gt;&lt;/div&gt;Apple has issued an apology for the FaceTime bug which allowed you to eavesdrop on others during group calls. An update to squash the bug will be rolled out to the public next week. &lt;a href="https://www.neowin.net/news/apple-apologizes-for-facetime-bug-fix-coming-next-week/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 01 Feb 2019 15:00:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/apple-apologizes-for-facetime-bug-fix-coming-next-week/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2015/02/modernfamilyconnectionlost_story.jpg" width="760" height="428" />
            <neowin:tags>#FaceTime #Apple #Apology</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Spectre Variant 4 disclosed, mitigations to result in another performance hit</title>
            <link>https://www.neowin.net/news/spectre-variant-4-disclosed-mitigations-to-result-in-another-performance-hit/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2018/01/1515683047_spectre01_medium.jpg" alt="" /&gt;&lt;/div&gt;New variants of Spectre have been discovered by Microsoft and Google, which allow attackers to read privileged data. While mitigations will be available soon, they will result in a performance hit. &lt;a href="https://www.neowin.net/news/spectre-variant-4-disclosed-mitigations-to-result-in-another-performance-hit/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 22 May 2018 04:52:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/spectre-variant-4-disclosed-mitigations-to-result-in-another-performance-hit/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2018/01/1515683047_spectre01_story.jpg" width="760" height="428" />
                        <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Critical flaw found in email encryption tools</title>
            <link>https://www.neowin.net/news/critical-flaw-found-in-email-encryption-tools/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2016/04/encryption_3_medium.jpg" alt="" /&gt;&lt;/div&gt;Researchers today warned that a critical flaw in OpenPGP and S/MIME encryption tools could leave your electronic communications at risk, allowing attackers to read encrypted emails in plaintext form. &lt;a href="https://www.neowin.net/news/critical-flaw-found-in-email-encryption-tools/"&gt;Read more...&lt;/a&gt;</description>
            <author>Muhammad Jarir Kanji</author>
            <pubDate>Mon, 14 May 2018 12:32:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/critical-flaw-found-in-email-encryption-tools/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2016/04/encryption_3_story.jpg" width="760" height="428" />
                        <neowin:twitter>@mjkanji</neowin:twitter>        </item>
                <item>
            <title>Google reveals a &quot;medium&quot; severity flaw in Windows 10 S</title>
            <link>https://www.neowin.net/news/google-reveals-a-medium-severity-flaw-in-windows-10-s/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/07/1753110703_1280x720-ghost-white-solid-color-background-fotor-20250721201054_medium.webp" alt="" /&gt;&lt;/div&gt;Despite Microsoft&amp;#039;s repeated requests for an extension to the standard 90-day disclosure deadline, Google has gone on to reveal a &amp;quot;medium&amp;quot; severity flaw in systems with UMCI, such as Windows 10 S. &lt;a href="https://www.neowin.net/news/google-reveals-a-medium-severity-flaw-in-windows-10-s/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 20 Apr 2018 04:10:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-reveals-a-medium-severity-flaw-in-windows-10-s/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/07/1753110703_1280x720-ghost-white-solid-color-background-fotor-20250721201054_story.webp" width="760" height="428" />
                        <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Windows security allegedly compromised due to CFG bypass; Microsoft investigating</title>
            <link>https://www.neowin.net/news/windows-security-allegedly-compromised-due-to-cfg-bypass-microsoft-investigating/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2018/01/1516467535_windows10-4_medium.jpg" alt="" /&gt;&lt;/div&gt;It appears that Control Flow Guard (CFG) in Windows 8.1 and 10 can be bypassed, effectively putting 500 million computers at risk. Microsoft is investigating the issue and should have a fix soon. &lt;a href="https://www.neowin.net/news/windows-security-allegedly-compromised-due-to-cfg-bypass-microsoft-investigating/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 08 Mar 2018 03:48:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/windows-security-allegedly-compromised-due-to-cfg-bypass-microsoft-investigating/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2018/01/1516467535_windows10-4_story.jpg" width="760" height="428" />
                        <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Cortana could open unencrypted websites while your system is locked</title>
            <link>https://www.neowin.net/news/cortana-can-open-unencrypted-websites-while-your-system-is-locked/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2018/01/1516467484_cortanaai5_medium.jpg" alt="" /&gt;&lt;/div&gt;Two independent Israeli researchers have found a loophole with Microsoft&amp;#039;s digital assistant- Cortana. The assistant can be used by anyone with malicious intent to bypass a locked PC.  &lt;a href="https://www.neowin.net/news/cortana-can-open-unencrypted-websites-while-your-system-is-locked/"&gt;Read more...&lt;/a&gt;</description>
            <author>Gurkaran Singh</author>
            <pubDate>Wed, 07 Mar 2018 21:44:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/cortana-can-open-unencrypted-websites-while-your-system-is-locked/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2018/01/1516467484_cortanaai5_story.jpg" width="760" height="428" />
                        <neowin:twitter>@karansingh990</neowin:twitter>        </item>
                <item>
            <title>Google exposes security flaw in Microsoft Edge [Update]</title>
            <link>https://www.neowin.net/news/google-exposes-security-flaw-in-microsoft-edge/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2017/03/1489980727_microsoft-edge-surface_medium.jpg" alt="" /&gt;&lt;/div&gt;After Microsoft&amp;#039;s failure to fix a flaw in its Edge browser in the allotted time, Google has publicly disclosed the bug - which allows bypassing Edge&amp;#039;s ACG and creating an executable page in memory. &lt;a href="https://www.neowin.net/news/google-exposes-security-flaw-in-microsoft-edge/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Sat, 17 Feb 2018 08:52:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-exposes-security-flaw-in-microsoft-edge/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2017/03/1489980727_microsoft-edge-surface_story.jpg" width="760" height="428" />
                        <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Windows 10 bug lets malware bypass security scans using a null character</title>
            <link>https://www.neowin.net/news/windows-10-bug-let-malware-bypass-security-scans-using-a-null-character/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/07/1751451627_1280x720-ghost-white-solid-color-background-fotor-20250702151924_medium.webp" alt="" /&gt;&lt;/div&gt;A bug in the Windows 10 Anti-Malware Scan Interface causes the security apparatus to truncate its scans when encountering a null character. The bug was fixed in this month&amp;#039;s Patch Tuesday. &lt;a href="https://www.neowin.net/news/windows-10-bug-let-malware-bypass-security-scans-using-a-null-character/"&gt;Read more...&lt;/a&gt;</description>
            <author>Muhammad Jarir Kanji</author>
            <pubDate>Mon, 19 Feb 2018 17:00:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/windows-10-bug-let-malware-bypass-security-scans-using-a-null-character/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/07/1751451627_1280x720-ghost-white-solid-color-background-fotor-20250702151924_story.webp" width="760" height="428" />
                        <neowin:twitter>@mjkanji</neowin:twitter>        </item>
                <item>
            <title>Microsoft to leave Skype bug needing massive rewrite unfixed for now</title>
            <link>https://www.neowin.net/news/microsoft-to-leave-skype-bug-needing-massive-rewrite-unfixed-for-now/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2018/01/1515701785_skype01_medium.jpg" alt="" /&gt;&lt;/div&gt;A newly discovered Skype bug that can allow an attacker to gain system-level privileges will be left unfixed for now, as Microsoft chooses to instead concentrate on creating a new client altogether. &lt;a href="https://www.neowin.net/news/microsoft-to-leave-skype-bug-needing-massive-rewrite-unfixed-for-now/"&gt;Read more...&lt;/a&gt;</description>
            <author>Muhammad Jarir Kanji</author>
            <pubDate>Tue, 13 Feb 2018 12:44:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-to-leave-skype-bug-needing-massive-rewrite-unfixed-for-now/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2018/01/1515701785_skype01_story.jpg" width="760" height="428" />
                        <neowin:twitter>@mjkanji</neowin:twitter>        </item>
                <item>
            <title>Intel: Chips coming later this year to be free of Spectre and Meltdown flaws</title>
            <link>https://www.neowin.net/news/intel-chips-coming-later-this-year-to-be-free-of-spectre-and-meltdown-flaws/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2017/11/1510770325_intel_ceo_brian_krzanich_medium.jpg" alt="" /&gt;&lt;/div&gt;In its quarterly earnings call for investors, the company vowed that it was working to fix the flaws in its chips, and vowed that its processors due out later this year will be vulnerability-free. &lt;a href="https://www.neowin.net/news/intel-chips-coming-later-this-year-to-be-free-of-spectre-and-meltdown-flaws/"&gt;Read more...&lt;/a&gt;</description>
            <author>John Keefer</author>
            <pubDate>Fri, 26 Jan 2018 00:26:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/intel-chips-coming-later-this-year-to-be-free-of-spectre-and-meltdown-flaws/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2017/11/1510770325_intel_ceo_brian_krzanich_story.jpg" width="760" height="428" />
                        <neowin:twitter>@keefinator</neowin:twitter>        </item>
                <item>
            <title>A text bomb can freeze or lock your iPhone; Fix coming next week [Update]</title>
            <link>https://www.neowin.net/news/a-text-bomb-can-freeze-or-lock-your-iphone-apple-has-been-told/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2018/01/1516224986_imessage_iphone_6_star_emoji_hero_0_medium.jpg" alt="" /&gt;&lt;/div&gt;Security researchers are always trying to find ways to break devices or get into their code. If a problem is found, they alert the manufacturer to it can be fixed quietly. Others can be more vocal. &lt;a href="https://www.neowin.net/news/a-text-bomb-can-freeze-or-lock-your-iphone-apple-has-been-told/"&gt;Read more...&lt;/a&gt;</description>
            <author>John Keefer</author>
            <pubDate>Wed, 17 Jan 2018 21:42:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/a-text-bomb-can-freeze-or-lock-your-iphone-apple-has-been-told/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2018/01/1516224986_imessage_iphone_6_star_emoji_hero_0_story.jpg" width="760" height="428" />
                        <neowin:twitter>@keefinator</neowin:twitter>        </item>
        	</channel>
</rss>
