#patch management
112 stories taggedpatch management · page 2 of 8.

Windows Server 2022 mainstream support ends next month
The 2021 release moves to extended support in October, with free security updates continuing until 2031.

Hackuity Raises $19 Million to Help Companies Stop Drowning in Security Warnings
A French cybersecurity firm wants to solve a problem every large organisation quietly has: too many security alerts, too few people to sort through them.

A Windows 11 update is locking staff out of their own work computers
Microsoft's November patch, KB5124008, is breaking the trust link between Windows 11 machines and company networks, leaving valid passwords rejected at the login screen.

A Zero-Day With a Perfect Danger Score Is Being Exploited in N-able's Remote Management Software
Three vulnerabilities in four days have left IT service providers scrambling to patch N-central, the tool they use to remotely manage their customers' computers. One flaw is already being used by attackers.

Broadcom Patches Critical VMware Workstation Flaw That Lets Admins Escape to the Host
An integer-overflow bug rated 9.3 out of 10 lets a privileged user inside a virtual machine run code on the underlying computer.

Microsoft Cloud Fixes, 5,000 Dropbox Accounts Hijacked, and a $1.1 Billion Security Startup: This Week's Briefing
Microsoft patched flaws in its cloud platform, criminals walked into roughly 5,000 Dropbox accounts via a signup flaw, and browser-security firm Guardio hit a $1.1 billion valuation.

Plex tells users to update now as it patches unspecified security flaws
The media server company emailed customers directly, a rare step, and is holding back details until CVE numbers are assigned.

AI Is Finding Software Flaws Faster Than Anyone Can Fix Them. Here's Why Experts Say Don't Panic Yet.
A new report tracked nearly 40,000 software vulnerability reports across a year of real data. The headline number is alarming. The fine print is more reassuring.

Rockwell Automation Fixes More Than a Dozen Security Flaws Across Its Industrial Software
The manufacturing technology company has issued patches for vulnerabilities in products used to control factory equipment worldwide, including RSLinx Classic and FactoryTalk.

Hackers Are Already Breaking Into Software Stores Using a Flaw Disclosed Three Days Ago
A critical security hole in JFrog Artifactory, a platform used by thousands of companies to store and ship software, is being actively exploited just 72 hours after its public disclosure.

Hackers Stole Nuclear Blueprints From the Philippines Using Flaws Fixed Two Years Ago
Researchers found nearly 1.2 gigabytes of stolen data on a server in Amsterdam, including reactor component databases, fuel records, and passport files belonging to Filipino government scientists.

Two Bugs in GeoNetwork Let Attackers Take Over Government Map Portals
A chain of flaws in the open-source software behind many public geoportals allowed strangers on the internet to run their own code on the server. Fixes landed in July 2026.

Hackers Are Already Exploiting a Critical Flaw in JFrog Artifactory
A severe authentication weakness in a tool used by software teams worldwide was patched on August 28. Within days, attackers had found a way to use it to give themselves full administrator access.

Researcher Drops 'HardBreacher' Exploit for Kaspersky Security Software
A bug-hunter who has repeatedly embarrassed Microsoft now has Kaspersky in the crosshairs, releasing a proof-of-concept exploit that can hand an attacker near-total control of a Windows machine running Kaspersky Endpoint Security.

Hackers Are Actively Exploiting a Near-Perfect-Score Flaw in Ruby on Rails
A critical vulnerability in the popular web framework lets criminals read files off a server and run their own code on it, and the official patch only closes half the door.