<?xml version="1.0"?>
<rss version="2.0" xmlns:media="http://search.yahoo.com/mrss/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:neowin="https://www.neowin.net/">
	<channel>
		<title>Neowin News Feed for: Rce</title>
		<link>https://www.neowin.net/news/tag/rce/</link>
        <atom:link href="https://www.neowin.net/news/rss/rce/" rel="self" type="application/rss+xml" />
		<description>Neowin News Feed for: Rce</description>
		<language>en-us</language>
		<generator>Neowin Ignition News</generator>
		<managingEditor>editor@neowin.net (Managing Editor)</managingEditor>
		<webMaster>developers@neowin.net (Neowin Developers)</webMaster>
		<ttl>5</ttl>
		<image>
			<title>Neowin.net</title>
			<url>https://www.neowin.net/images/pegasus/icon.png</url>
			<link>https://www.neowin.net</link>
		</image>
		        <item>
            <title>Windows 11, Microsoft Edge, and Exchange hacked at Pwn2Own</title>
            <link>https://www.neowin.net/news/windows-11-microsoft-edge-and-exchange-hacked-at-pwn2own/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2026/03/1772543834_windows_11_red_neowin_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft products and AI apps fell to multiple 0-days at Pwn2Own 2026 as researchers claimed huge cash prizes. &lt;a href="https://www.neowin.net/news/windows-11-microsoft-edge-and-exchange-hacked-at-pwn2own/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 15 May 2026 18:38:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/windows-11-microsoft-edge-and-exchange-hacked-at-pwn2own/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2026/03/1772543834_windows_11_red_neowin_story.webp" width="760" height="428" />
            <neowin:tags>#Pwn2Own2026 #Windows11</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Exchange Server has a &quot;critical&quot; security bug, but Microsoft does not have a proper fix yet</title>
            <link>https://www.neowin.net/news/exchange-server-has-a-critical-security-bug-but-microsoft-does-not-have-a-proper-fix-yet/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/08/1755024379_1280x720-ghost-white-solid-color-background-fotor-20250812234553_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft warns of a critical Exchange Server flaw that could let attackers hijack browsers through emails, with full fixes locked behind paid support for some. &lt;a href="https://www.neowin.net/news/exchange-server-has-a-critical-security-bug-but-microsoft-does-not-have-a-proper-fix-yet/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 15 May 2026 07:44:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/exchange-server-has-a-critical-security-bug-but-microsoft-does-not-have-a-proper-fix-yet/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/08/1755024379_1280x720-ghost-white-solid-color-background-fotor-20250812234553_story.webp" width="760" height="428" />
            <neowin:tags>#Microsoft #ExchangeServer</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>KB5084597: Microsoft outs Windows 11 25H2, 24H2 emergency update for a critical network flaw</title>
            <link>https://www.neowin.net/news/kb5084597-microsoft-outs-windows-11-25h2-24h2-emergency-update-for-a-critical-network-flaw/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2026/03/1772543834_windows_11_red_neowin_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft has released an emegency hotpatch update against a critical network security vulnerability under KB5084597 for Windows 11 25H2 and 24H2. &lt;a href="https://www.neowin.net/news/kb5084597-microsoft-outs-windows-11-25h2-24h2-emergency-update-for-a-critical-network-flaw/"&gt;Read more...&lt;/a&gt;</description>
            <author>Sayan Sen</author>
            <pubDate>Sat, 14 Mar 2026 06:40:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/kb5084597-microsoft-outs-windows-11-25h2-24h2-emergency-update-for-a-critical-network-flaw/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2026/03/1772543834_windows_11_red_neowin_story.webp" width="760" height="428" />
            <neowin:tags>#Microsoft #Windows11</neowin:tags>            <neowin:twitter>@ssc_combater007</neowin:twitter>        </item>
                <item>
            <title>Microsoft patches Notepad flaw that could let attackers hijack Windows PCs</title>
            <link>https://www.neowin.net/news/microsoft-patches-notepad-flaw-that-could-let-attackers-hijack-windows-pcs/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2026/02/1770807252_windows_notepad_featured_image_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft just patched a serious vulnerability in Notepad for Windows that could allow hackers to take control of victims&amp;#039; computers. &lt;a href="https://www.neowin.net/news/microsoft-patches-notepad-flaw-that-could-let-attackers-hijack-windows-pcs/"&gt;Read more...&lt;/a&gt;</description>
            <author>Ivan Jenic</author>
            <pubDate>Wed, 11 Feb 2026 11:08:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-patches-notepad-flaw-that-could-let-attackers-hijack-windows-pcs/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2026/02/1770807252_windows_notepad_featured_image_story.webp" width="760" height="428" />
            <neowin:tags>#notepad</neowin:tags>            <neowin:twitter>@ivan_jenic</neowin:twitter>        </item>
                <item>
            <title>Microsoft is securing a Windows Server component, IT admins warned about new configuration</title>
            <link>https://www.neowin.net/news/microsoft-is-securing-a-windows-server-component-it-admins-warned-about-new-configuration/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2024/07/1722170868_windows_server_medium.jpg" alt="" /&gt;&lt;/div&gt;IT admins have been told to follow guidance related to deployments handled via the Windows Deployment Services (WDS). There are only a few months left before a Windows Server feature is disabled. &lt;a href="https://www.neowin.net/news/microsoft-is-securing-a-windows-server-component-it-admins-warned-about-new-configuration/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 14 Jan 2026 16:04:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-is-securing-a-windows-server-component-it-admins-warned-about-new-configuration/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2024/07/1722170868_windows_server_story.jpg" width="760" height="428" />
            <neowin:tags>#WindowsServer #WDS #Microsoft</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft shares Windows Server KB5070881 KB5070879 KB5070884 OOB updates for CVE-2025-59287</title>
            <link>https://www.neowin.net/news/microsoft-shares-windows-server-kb5070881-kb5070879-kb5070884-oob-updates-for-cve-2025-59287/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/10/1761278790_windows_update_neowin_medium.webp" alt="" /&gt;&lt;/div&gt;Microsoft has published emergency OOB updates under KB5070881, KB5070879, KB5070884, for, CVE-2025-59287, a remote code execution flaw. &lt;a href="https://www.neowin.net/news/microsoft-shares-windows-server-kb5070881-kb5070879-kb5070884-oob-updates-for-cve-2025-59287/"&gt;Read more...&lt;/a&gt;</description>
            <author>Sayan Sen</author>
            <pubDate>Fri, 24 Oct 2025 04:16:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-shares-windows-server-kb5070881-kb5070879-kb5070884-oob-updates-for-cve-2025-59287/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/10/1761278790_windows_update_neowin_story.webp" width="760" height="428" />
            <neowin:tags>#Microsoft #WindowsServer #RCE</neowin:tags>            <neowin:twitter>@ssc_combater007</neowin:twitter>        </item>
                <item>
            <title>Microsoft Mesh also impacted by Unity issue, patches rolling out for all games too</title>
            <link>https://www.neowin.net/news/microsoft-mesh-also-impacted-by-unity-issue-patches-rolling-out-for-all-games-too/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/11/1635745353_mesh_for_teams__slide_6_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has published a dedicated advisory for the recent Unity RCE vulnerability, indicating that Mesh applications and dozens of games are impacted. &lt;a href="https://www.neowin.net/news/microsoft-mesh-also-impacted-by-unity-issue-patches-rolling-out-for-all-games-too/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Mon, 06 Oct 2025 17:28:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-mesh-also-impacted-by-unity-issue-patches-rolling-out-for-all-games-too/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/11/1635745353_mesh_for_teams__slide_6_story.jpg" width="760" height="428" />
            <neowin:tags>#MicrosoftMesh #Unity</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Unity discloses severe RCE vulnerability, urges developers to apply patches</title>
            <link>https://www.neowin.net/news/unity-discloses-severe-rce-vulnerability-urges-developers-to-apply-patches/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/10/1759556569_1920x1080-white-solid-color-background-fotor-20251004104155_medium.webp" alt="" /&gt;&lt;/div&gt;Unity has disclosed a particularly severe vulnerability affecting all games going back to 2017. Malicious actors can utilize this security issue to gain access to data on your machine. &lt;a href="https://www.neowin.net/news/unity-discloses-severe-rce-vulnerability-urges-developers-to-apply-patches/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Sat, 04 Oct 2025 06:32:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/unity-discloses-severe-rce-vulnerability-urges-developers-to-apply-patches/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/10/1759556569_1920x1080-white-solid-color-background-fotor-20251004104155_story.webp" width="760" height="428" />
            <neowin:tags>#Unity #RCE #GameDev</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft will now pay you up to $40,000 for reporting vulnerabilities in .NET</title>
            <link>https://www.neowin.net/news/microsoft-will-now-pay-you-up-to-40000-for-reporting-vulnerabilities-in-net/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2024/03/1711570117_1605027417_microsoft_net_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft will now award anyone up to $40,000 if they privately disclose a high-severity security issue in .NET and ASP.NET Core, along with complete documentation. &lt;a href="https://www.neowin.net/news/microsoft-will-now-pay-you-up-to-40000-for-reporting-vulnerabilities-in-net/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 31 Jul 2025 19:12:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-will-now-pay-you-up-to-40000-for-reporting-vulnerabilities-in-net/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2024/03/1711570117_1605027417_microsoft_net_story.jpg" width="760" height="428" />
            <neowin:tags>#DotNet #BugBountyProgram</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>U.S. nuclear weapons department compromised in SharePoint attack</title>
            <link>https://www.neowin.net/news/us-nuclear-weapons-department-compromised-in-sharepoint-attack/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/07/1753104544_sharepoint_red_neowin_medium.webp" alt="" /&gt;&lt;/div&gt;The U.S. Energy Department, responsible for producing and disassembling nuclear weapons, was impacted in the latest attacks on Microsoft SharePoint. &lt;a href="https://www.neowin.net/news/us-nuclear-weapons-department-compromised-in-sharepoint-attack/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 23 Jul 2025 11:30:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/us-nuclear-weapons-department-compromised-in-sharepoint-attack/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/07/1753104544_sharepoint_red_neowin_story.webp" width="760" height="428" />
            <neowin:tags>#SharePointHack #Nuclear</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Rsync package in Ubuntu distros updated to fix remote code execution bugs, download now</title>
            <link>https://www.neowin.net/news/rsync-package-in-ubuntu-distros-updated-to-fix-remote-code-execution-bugs-download-now/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2025/05/1746170544_1647455145_new-ubuntu-logo_1_medium.jpg" alt="" /&gt;&lt;/div&gt;Canonical has pushed a patch for rsync after researchers uncovered serious vulnerabilities that enable remote code execution attacks. &lt;a href="https://www.neowin.net/news/rsync-package-in-ubuntu-distros-updated-to-fix-remote-code-execution-bugs-download-now/"&gt;Read more...&lt;/a&gt;</description>
            <author>Paul Hill</author>
            <pubDate>Wed, 15 Jan 2025 10:26:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/rsync-package-in-ubuntu-distros-updated-to-fix-remote-code-execution-bugs-download-now/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2025/05/1746170544_1647455145_new-ubuntu-logo_1_story.jpg" width="760" height="428" />
            <neowin:tags>#Ubuntu #rsync #Linux</neowin:tags>            <neowin:twitter>@ziks_99</neowin:twitter>        </item>
                <item>
            <title>Popular Asus routers found &quot;critically&quot; vulnerable to hacker attacks, firmware patch coming</title>
            <link>https://www.neowin.net/news/popular-asus-routers-found-critically-vulnerable-to-hacker-attacks-firmware-patch-coming/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2023/09/1693989415_asus_ac86u_ac2900_router_medium.jpg" alt="" /&gt;&lt;/div&gt;Some of Asus&amp;#039; popular mid-range and high-end routers have been found to be vulnerable to remote code execution and code injection attacks. Check the full list of routers and the firmware patches here. &lt;a href="https://www.neowin.net/news/popular-asus-routers-found-critically-vulnerable-to-hacker-attacks-firmware-patch-coming/"&gt;Read more...&lt;/a&gt;</description>
            <author>Sayan Sen</author>
            <pubDate>Wed, 06 Sep 2023 08:52:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/popular-asus-routers-found-critically-vulnerable-to-hacker-attacks-firmware-patch-coming/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2023/09/1693989415_asus_ac86u_ac2900_router_story.jpg" width="760" height="428" />
            <neowin:tags>#Asus #Router #RCE #Hacked</neowin:tags>            <neowin:twitter>@ssc_combater007</neowin:twitter>        </item>
                <item>
            <title>Microsoft Office, Excel, Word, Outlook 2013/2016 were vulnerable to Spoofing, Code Execution</title>
            <link>https://www.neowin.net/news/microsoft-office-excel-word-outlook-20132016-were-vulnerable-to-spoofing-code-execution/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/05/1621176360_office_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft released Windows security updates for Windows 11 as well as 10 this week via Patch Tuesday. It also rolled out security fixes for Office 2013/2016 that resolve RCE and Spoofing flaws. &lt;a href="https://www.neowin.net/news/microsoft-office-excel-word-outlook-20132016-were-vulnerable-to-spoofing-code-execution/"&gt;Read more...&lt;/a&gt;</description>
            <author>Sayan Sen</author>
            <pubDate>Thu, 10 Aug 2023 08:16:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-office-excel-word-outlook-20132016-were-vulnerable-to-spoofing-code-execution/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/05/1621176360_office_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #Outlook #Office</neowin:tags>            <neowin:twitter>@ssc_combater007</neowin:twitter>        </item>
                <item>
            <title>Rust-based malware used to hack both Windows and Linux servers</title>
            <link>https://www.neowin.net/news/rust-that-got-packed-into-windows-11-recently-used-to-hack-both-windows-and-linux-servers/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2019/01/1548605883_bugbash_medium.jpg" alt="" /&gt;&lt;/div&gt;A Redis server malware, that has been built on Rust, is infecting servers based on both Windows as well as Linux. Dubbed the &amp;quot;P2PInfect&amp;quot;, this worm is able to exploit the Lua vulnerability. &lt;a href="https://www.neowin.net/news/rust-that-got-packed-into-windows-11-recently-used-to-hack-both-windows-and-linux-servers/"&gt;Read more...&lt;/a&gt;</description>
            <author>Sayan Sen</author>
            <pubDate>Fri, 21 Jul 2023 22:18:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/rust-that-got-packed-into-windows-11-recently-used-to-hack-both-windows-and-linux-servers/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2019/01/1548605883_bugbash_story.jpg" width="760" height="428" />
            <neowin:tags>#Windows #Linux #Rust</neowin:tags>            <neowin:twitter>@ssc_combater007</neowin:twitter>        </item>
                <item>
            <title>faulTPM: AMD fTPM flaw that bypasses BitLocker even on modern Windows 11-supported Ryzens</title>
            <link>https://www.neowin.net/news/faultpm-amd-ftpm-flaw-that-bypasses-bitlocker-even-on-modern-windows-11-supported-ryzens/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2023/03/1679085496_amd_windows_11_bloom_bug_medium.jpg" alt="" /&gt;&lt;/div&gt;An AMD fTPM side channel security flaw dubbed &amp;quot;faulTPM&amp;quot; has been discovered by researchers. This security bug can even bypass BitLocker and it affects modern Windows 11-supported Ryzen chips. &lt;a href="https://www.neowin.net/news/faultpm-amd-ftpm-flaw-that-bypasses-bitlocker-even-on-modern-windows-11-supported-ryzens/"&gt;Read more...&lt;/a&gt;</description>
            <author>Sayan Sen</author>
            <pubDate>Thu, 04 May 2023 05:34:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/faultpm-amd-ftpm-flaw-that-bypasses-bitlocker-even-on-modern-windows-11-supported-ryzens/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2023/03/1679085496_amd_windows_11_bloom_bug_story.jpg" width="760" height="428" />
            <neowin:tags>#AMD #Ryzen #Security #TPM</neowin:tags>            <neowin:twitter>@ssc_combater007</neowin:twitter>        </item>
                <item>
            <title>Microsoft issues advisory about two 0-day vulnerabilities in Exchange Server, no fix yet</title>
            <link>https://www.neowin.net/news/microsoft-issues-advisory-about-two-0-day-vulnerabilities-in-exchange-server-no-fix-yet/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/03/1615131777_eo4_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has issued an advisory about two 0-day vulnerabilities affecting on-premises installations of Exchange Server. Unfortunately, no fix is available yet but there are a couple of mitigations. &lt;a href="https://www.neowin.net/news/microsoft-issues-advisory-about-two-0-day-vulnerabilities-in-exchange-server-no-fix-yet/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 30 Sep 2022 13:42:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-issues-advisory-about-two-0-day-vulnerabilities-in-exchange-server-no-fix-yet/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/03/1615131777_eo4_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #ExchangeServer</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>QNAP issues patch for an RCE security vulnerability affecting PHP in NAS Drive management</title>
            <link>https://www.neowin.net/news/qnap-issues-patch-for-an-rce-security-vulnerability-affecting-php-in-nas-drive-management/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2021/03/1615139012_qnap_ts-453d-05_medium.jpg" alt="" /&gt;&lt;/div&gt;QNAP has issued a patch of a security vulnerability that could affect certain configurations of its NAS Drives. The flaw resides in PHP that deals with FPM. It can allow remote code execution. &lt;a href="https://www.neowin.net/news/qnap-issues-patch-for-an-rce-security-vulnerability-affecting-php-in-nas-drive-management/"&gt;Read more...&lt;/a&gt;</description>
            <author>Alap Naik Desai</author>
            <pubDate>Wed, 22 Jun 2022 21:56:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/qnap-issues-patch-for-an-rce-security-vulnerability-affecting-php-in-nas-drive-management/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2021/03/1615139012_qnap_ts-453d-05_story.jpg" width="760" height="428" />
            <neowin:tags>#QNAP #NAS #Security #Flaw</neowin:tags>            <neowin:twitter>@alap1983</neowin:twitter>        </item>
                <item>
            <title>June Patch Tuesday: Microsoft fixes Follina vulnerability but not DogWalk</title>
            <link>https://www.neowin.net/news/june-patch-tuesday-microsoft-fixes-follina-vulnerability-but-not-dogwalk/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/05/1653980942_capture_(13)_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft&amp;#039;s latest Patch Tuesday updates - released yesterday - fix a lot of recently publicized security issues like Follina, however, DogWalk remains unpatched as Microsoft continues to downplay it. &lt;a href="https://www.neowin.net/news/june-patch-tuesday-microsoft-fixes-follina-vulnerability-but-not-dogwalk/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 15 Jun 2022 09:16:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/june-patch-tuesday-microsoft-fixes-follina-vulnerability-but-not-dogwalk/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/05/1653980942_capture_(13)_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #DogWalk #Follina</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Atlassian: There is a critical RCE flaw in Confluence, block internet access ASAP [Update]</title>
            <link>https://www.neowin.net/news/atlassian-there-is-a-critical-rce-flaw-in-confluence-so-block-internet-access-asap/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/06/1654246316_1583572366_product_36559_product_shots2_medium.jpg" alt="" /&gt;&lt;/div&gt;Some IT admins may be in for a scare this weekend as Atlassian has warned of a critical RCE flaw affecting all Confluence Server and Data Center versions. Internet access should be restricted ASAP. &lt;a href="https://www.neowin.net/news/atlassian-there-is-a-critical-rce-flaw-in-confluence-so-block-internet-access-asap/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 03 Jun 2022 08:58:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/atlassian-there-is-a-critical-rce-flaw-in-confluence-so-block-internet-access-asap/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/06/1654246316_1583572366_product_36559_product_shots2_story.jpg" width="760" height="428" />
            <neowin:tags>#Atlassian #Confluence #RCE</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft issues warning about RCE exploit in its Windows diagnostic tool</title>
            <link>https://www.neowin.net/news/microsoft-issues-warning-about-rce-exploit-in-its-windows-diagnostic-tool/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/05/1653980942_capture_(13)_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has issued a warning about a remote code execution flaw in its Microsoft Support Diagnostic Tool (MSDT). Virtually all supported versions of Windows and Windows Server are affected. &lt;a href="https://www.neowin.net/news/microsoft-issues-warning-about-rce-exploit-in-its-windows-diagnostic-tool/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Tue, 31 May 2022 07:14:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-issues-warning-about-rce-exploit-in-its-windows-diagnostic-tool/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/05/1653980942_capture_(13)_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #MSDT #RCE</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Android devices with Security Patch older than Dec 2021 remain vulnerable to security risk</title>
            <link>https://www.neowin.net/news/android-devices-with-security-patch-older-than-dec-2021-remain-vulnerable-to-security-risk/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2016/04/android-security_medium.jpg" alt="" /&gt;&lt;/div&gt;Nearly all Android smartphones and devices packing MediaTek or Qualcomm with a Security Patch dated prior to December 2021 remain vulnerable to an RCE security bug that can allow eavesdropping. &lt;a href="https://www.neowin.net/news/android-devices-with-security-patch-older-than-dec-2021-remain-vulnerable-to-security-risk/"&gt;Read more...&lt;/a&gt;</description>
            <author>Alap Naik Desai</author>
            <pubDate>Thu, 21 Apr 2022 20:40:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/android-devices-with-security-patch-older-than-dec-2021-remain-vulnerable-to-security-risk/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2016/04/android-security_story.jpg" width="760" height="428" />
            <neowin:tags>#RCE #Android #SecurityPatch</neowin:tags>            <neowin:twitter>@alap1983</neowin:twitter>        </item>
                <item>
            <title>Google issues warning about state-sponsored hackers from North Korea exploiting Chrome</title>
            <link>https://www.neowin.net/news/google-issues-warning-about-state-sponsored-hackers-from-north-korea-exploiting-chrome/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2022/03/1648146567_86c25359943c6c8cc87a5fd5b70dcbc3_(3)_medium.jpg" alt="" /&gt;&lt;/div&gt;Google has issued a warning about a sophisticated exploit kit being used to target news media, IT, crypto, and fintech personnel. The attackers were reportedly state-sponsored North Korean groups. &lt;a href="https://www.neowin.net/news/google-issues-warning-about-state-sponsored-hackers-from-north-korea-exploiting-chrome/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Thu, 24 Mar 2022 18:52:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/google-issues-warning-about-state-sponsored-hackers-from-north-korea-exploiting-chrome/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2022/03/1648146567_86c25359943c6c8cc87a5fd5b70dcbc3_(3)_story.jpg" width="760" height="428" />
            <neowin:tags>#Google #Chrome #NorthKorea</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>AMD issues fix for Spectre v2 which confirms nearly every desktop CPU is still vulnerable</title>
            <link>https://www.neowin.net/news/amd-issues-fix-for-spectre-v2-which-confirms-nearly-every-desktop-cpu-is-still-vulnerable/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2018/01/1515683086_spectremeltdown02_medium.jpg" alt="" /&gt;&lt;/div&gt;Intel and ARM are vulnerable to the Spectre-BHB flaw, but AMD is apparently troubled by Spectre v2, which it should have fixed back in 2018. AMD has now issued a new fix for the CVE-2017-5715 bug. &lt;a href="https://www.neowin.net/news/amd-issues-fix-for-spectre-v2-which-confirms-nearly-every-desktop-cpu-is-still-vulnerable/"&gt;Read more...&lt;/a&gt;</description>
            <author>Alap Naik Desai</author>
            <pubDate>Sat, 12 Mar 2022 06:18:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/amd-issues-fix-for-spectre-v2-which-confirms-nearly-every-desktop-cpu-is-still-vulnerable/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2018/01/1515683086_spectremeltdown02_story.jpg" width="760" height="428" />
            <neowin:tags>#Spectrev2 #Intel #ARM #AMD</neowin:tags>            <neowin:twitter>@alap1983</neowin:twitter>        </item>
                <item>
            <title>$400,000 payout for Microsoft Outlook zero-click RCE security flaw announced by Zerodium</title>
            <link>https://www.neowin.net/news/400000-payout-for-microsoft-outlook-zero-click-rce-security-flaw-announced-by-zerodium/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2020/07/1594748439_outlook_logo_medium.jpg" alt="" /&gt;&lt;/div&gt;Zerodium has increased the prize bounty for zero-click remote code executions (RCEs) on Microsoft Outlook up to $400,000. However, the firm has noted that the rise may only be temporary. &lt;a href="https://www.neowin.net/news/400000-payout-for-microsoft-outlook-zero-click-rce-security-flaw-announced-by-zerodium/"&gt;Read more...&lt;/a&gt;</description>
            <author>Sayan Sen</author>
            <pubDate>Fri, 28 Jan 2022 14:22:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/400000-payout-for-microsoft-outlook-zero-click-rce-security-flaw-announced-by-zerodium/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2020/07/1594748439_outlook_logo_story.jpg" width="760" height="428" />
            <neowin:tags>#BugBounty #MicrosoftOutlook</neowin:tags>            <neowin:twitter>@ssc_combater007</neowin:twitter>        </item>
                <item>
            <title>Your HP printer may need a firmware update to save it from a &quot;Critical&quot; buffer overflow bug</title>
            <link>https://www.neowin.net/news/your-hp-printer-may-need-a-firmware-update-to-save-it-from-a-critical-buffer-overflow-bug/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2016/09/1473680050_hp-printer_medium.jpg" alt="" /&gt;&lt;/div&gt;HP has issued a list of its printers that are vulnerable to a new &amp;quot;Critical&amp;quot; buffer overflow bug that can lead to exploitation. Fortunately, patched firmware for these models has also been released. &lt;a href="https://www.neowin.net/news/your-hp-printer-may-need-a-firmware-update-to-save-it-from-a-critical-buffer-overflow-bug/"&gt;Read more...&lt;/a&gt;</description>
            <author>Sayan Sen</author>
            <pubDate>Tue, 30 Nov 2021 16:12:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/your-hp-printer-may-need-a-firmware-update-to-save-it-from-a-critical-buffer-overflow-bug/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2016/09/1473680050_hp-printer_story.jpg" width="760" height="428" />
            <neowin:tags>#BufferOverflow #HPprinterbug</neowin:tags>            <neowin:twitter>@ssc_combater007</neowin:twitter>        </item>
                <item>
            <title>CISA: BadAlloc vulnerability can lead to remote code execution in BlackBerry products</title>
            <link>https://www.neowin.net/news/cisa-badalloc-vulnerability-can-lead-to-remote-code-execution-in-blackberry-products/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2017/08/1502243196_screen_shot_2017-08-08_at_6.46.09_pm_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft highlighted a collection of BadAlloc vulnerabilities earlier this year. Federal U.S. cybersecurity agency CISA has now issued an advisory as the problem affects tons of BlackBerry products. &lt;a href="https://www.neowin.net/news/cisa-badalloc-vulnerability-can-lead-to-remote-code-execution-in-blackberry-products/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 18 Aug 2021 09:02:02 +0000</pubDate>
            <guid>https://www.neowin.net/news/cisa-badalloc-vulnerability-can-lead-to-remote-code-execution-in-blackberry-products/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2017/08/1502243196_screen_shot_2017-08-08_at_6.46.09_pm_story.jpg" width="760" height="428" />
            <neowin:tags>#BadAlloc #Microsoft #BlackBerry</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft issues advisory about new SolarWinds cyberattack</title>
            <link>https://www.neowin.net/news/microsoft-issues-advisory-about-new-solarwinds-cyberattack/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2017/10/1508843982_password_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has issued an advisory about a cyberattack from a Chinese group targeting SolarWinds&amp;#039; products. A hotfix has been released but organizations are still advised to review guidance. &lt;a href="https://www.neowin.net/news/microsoft-issues-advisory-about-new-solarwinds-cyberattack/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Wed, 14 Jul 2021 12:54:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-issues-advisory-about-new-solarwinds-cyberattack/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2017/10/1508843982_password_story.jpg" width="760" height="428" />
            <neowin:tags>#Microsoft #SolarWinds</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft: Our PrintNightmare patch is effective, you&#039;re just using Windows wrong</title>
            <link>https://www.neowin.net/news/microsoft-our-printnightmare-patch-is-effective-youre-just-using-windows-wrong/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2019/04/1556405213_patches_medium.jpg" alt="" /&gt;&lt;/div&gt;Despite claims to the contrary, Microsoft says that its PrintNightmare patch works as intended. It states that security researchers who are calling it ineffective are using insecure configurations. &lt;a href="https://www.neowin.net/news/microsoft-our-printnightmare-patch-is-effective-youre-just-using-windows-wrong/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 09 Jul 2021 04:56:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-our-printnightmare-patch-is-effective-youre-just-using-windows-wrong/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2019/04/1556405213_patches_story.jpg" width="760" height="428" />
            <neowin:tags>#PrintNightmare #Windows</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft provides further mitigations for PrintNightmare exploit, awards it &quot;high&quot; severity</title>
            <link>https://www.neowin.net/news/microsoft-provides-further-mitigations-for-printnightmare-exploit-awards-it-high-severity/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2018/01/1516467535_windows10-4_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has offered some further mitigations against the highly dangerous PrintNightmare exploit. The company has also given it a CVSS rating of 8.8/10, which almost awards it &amp;quot;critical&amp;quot; severity. &lt;a href="https://www.neowin.net/news/microsoft-provides-further-mitigations-for-printnightmare-exploit-awards-it-high-severity/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Sun, 04 Jul 2021 05:12:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-provides-further-mitigations-for-printnightmare-exploit-awards-it-high-severity/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2018/01/1516467535_windows10-4_story.jpg" width="760" height="428" />
            <neowin:tags>#PrintNightmare #Windows</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft is investigating a critical Windows Print Spooler exploit called PrintNightmare</title>
            <link>https://www.neowin.net/news/microsoft-is-investigating-a-critical-windows-print-spooler-exploit-called-printnightmare/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2020/10/1604115739_capture_medium.jpg" alt="" /&gt;&lt;/div&gt;An exploit called &amp;quot;PrintNightmare&amp;quot; is being investigated by Microsoft. It potentially affects all versions of Windows. U.S. CISA has marked it as &amp;quot;critical&amp;quot; as it can lead to remote code execution. &lt;a href="https://www.neowin.net/news/microsoft-is-investigating-a-critical-windows-print-spooler-exploit-called-printnightmare/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Fri, 02 Jul 2021 05:48:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-is-investigating-a-critical-windows-print-spooler-exploit-called-printnightmare/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2020/10/1604115739_capture_story.jpg" width="760" height="428" />
            <neowin:tags>#PrintNightmare #Windows</neowin:tags>            <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>A critical Adobe Flash Player zero-day vulnerability is out in the wild... again</title>
            <link>https://www.neowin.net/news/a-critical-adobe-flash-player-zero-day-vulnerability-is-out-in-the-wild-again/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2015/06/adobe-flash-01_medium.jpg" alt="" /&gt;&lt;/div&gt;A critical zero-day vulnerability has been discovered in Adobe Flash Player, which allows Remote Code Execution using a Microsoft Excel document, potentially making you lose control of your system. &lt;a href="https://www.neowin.net/news/a-critical-adobe-flash-player-zero-day-vulnerability-is-out-in-the-wild-again/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Sat, 03 Feb 2018 06:36:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/a-critical-adobe-flash-player-zero-day-vulnerability-is-out-in-the-wild-again/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2015/06/adobe-flash-01_story.jpg" width="760" height="428" />
                        <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
                <item>
            <title>Microsoft finds an exploit in Google Chrome, emphasizes Edge&#039;s security</title>
            <link>https://www.neowin.net/news/microsoft-finds-an-exploit-in-google-chrome-emphasizes-edges-security/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2015/08/img0_medium.jpg" alt="" /&gt;&lt;/div&gt;Tit for tat? Google has revealed multiple Windows exploits over the years &amp;amp; has even criticized Microsoft for being slow to patch it. Now, Microsoft is returning the favor by finding a bug in Chrome. &lt;a href="https://www.neowin.net/news/microsoft-finds-an-exploit-in-google-chrome-emphasizes-edges-security/"&gt;Read more...&lt;/a&gt;</description>
            <author>Gurkaran Singh</author>
            <pubDate>Thu, 19 Oct 2017 12:08:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-finds-an-exploit-in-google-chrome-emphasizes-edges-security/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2015/08/img0_story.jpg" width="760" height="428" />
                        <neowin:twitter>@karansingh990</neowin:twitter>        </item>
                <item>
            <title>Microsoft vows to strengthen the security of Edge&#039;s sandbox</title>
            <link>https://www.neowin.net/news/microsoft-vows-to-strengthen-the-security-of-edges-sandbox/</link>
            <description>&lt;div style="float:left;margin-right:10px;"&gt;&lt;img src="https://cdn.neowin.com/news/images/uploaded/2015/09/microsoft-edge-10_medium.jpg" alt="" /&gt;&lt;/div&gt;Microsoft has detailed the several layers of security in its Edge browser that reduce the chances of malicious exploits by attackers, stating that it will continue to strengthen the Edge sandbox. &lt;a href="https://www.neowin.net/news/microsoft-vows-to-strengthen-the-security-of-edges-sandbox/"&gt;Read more...&lt;/a&gt;</description>
            <author>Usama Jawad</author>
            <pubDate>Sat, 25 Mar 2017 10:14:01 +0000</pubDate>
            <guid>https://www.neowin.net/news/microsoft-vows-to-strengthen-the-security-of-edges-sandbox/</guid>
            <media:thumbnail url="https://cdn.neowin.com/news/images/uploaded/2015/09/microsoft-edge-10_story.jpg" width="760" height="428" />
                        <neowin:twitter>@UsamaJawad96</neowin:twitter>        </item>
        	</channel>
</rss>
