Today's Top Windows System Articles for 2026-06-10


Articles for the IT Professional. Today's edition includes 150 articles from 27 sites. We chose these from 7160 articles found on 140 sites.


Today's featured sites are:
HTMD Community Intune Windows Modern Workplace Device Management, www.theregister.com - Articles, gHacks, Irish Tech News, Radar, Reddit : K-12 Systems Administrators, BleepingComputer, Techdirt, Windows Latest, GeekWire, Check Point Research, TechRepublic, 9to5Mac, Windows 10 Help Forums, Petri IT Knowledgebase, Microsoft Security Blog, Nextcloud adds Euro-Office to Hub workplace suite, expands AI assistant – Computerworld, RMON Networks, Latest from Windows Central , Ars Technica - All content, darkreading, VentureBeat, Neowin, Microsoft for Developers, CNET, MSRC Security Update Guide, Blog – Hackaday.

Article Keywords: intune, sccm

Configuring Remote Print Spooler RPC Connection Settings in Microsoft Intune

Hello - Here is the new HTMD Blog Article for you. Enjoy reading it. Subscribe to YouTube Channel https://www.youtube.com/c/AnoopCNairSCCM?sub_confirmation=1 and LinkedIn page for latest updates htt...


HTMD Community Intune Windows Modern Workplace Device Management
Jun 8, 2026 - anoopcnair.com
Article Keywords: incident, bug, error, sso, automation, script

Consultant mistakenly deleted a ton of data – but reported it as a bug

And he got away with it too!


www.theregister.com - Articles
Jun 8, 2026 - theregister.com
Article Keywords: rsat, alert, routing

Microsoft Phone Link Adds Apple Messages Support for Windows, With Group Chat and Attachment Limitations

Microsoft Phone Link now supports Apple Messages on Windows, which means iPhone users can send and receive iMessages and SMS texts from their PC without having Thank you for being a Ghacks reader. Th...


gHacks
Jun 8, 2026 - ghacks.net
Article Keywords: rsat, breaking

From Startup Dreams to Startup Success: StartUp Ballymun Turns 10

StartUp Ballymun celebrates ten years of supporting entrepreneurs, startups and small business owners across North Dublin This year’s event, themed “Steering a Business in Choppy Waters”, takes place ...


Irish Tech News
Jun 8, 2026 - irishtechnews.ie
Article Keywords: review::-3, rsat, exploit::2, critical, alert, issue, bug, error, failed, latency, sso, automation, script, pipeline

The AI Agents Stack (2026 Edition)

The following article originally appeared on Paolo Perrone’s The AI Engineer Substack and is being reposted here with the author’s permission. Your team picks LangGraph for a customer support chatbot....


Radar
Jun 8, 2026 - oreilly.com
Article Keywords: breaking, issue, automation

Forward-Looking Technical Debt: The Hidden Cost of AI Hesitation

Guest post by Adam Spearing, VP of AI GTM EMEA at ServiceNow We talk endlessly about ‘technical debt’ – the accumulated cost of past shortcuts, and delayed upgrades. But a more insidious problem is em...


Irish Tech News
Jun 8, 2026 - irishtechnews.ie
Article Keywords: intune, script

Adobe Creative Cloud through Company Portal on Macs

$1 submitted by /u/mathmanhale


Reddit : K-12 Systems Administrators
Jun 8, 2026 - reddit.com
Article Keywords: zero-day::2, remote code execution::2, critical

Gogs patches critical zero-day enabling remote code execution

Gogs has patched a critical security zero-day flaw that can allow attackers to compromise Internet-facing instances and access any repositories (including private ones). [...]


BleepingComputer
Jun 8, 2026 - bleepingcomputer.com
Article Keywords: fix, issue, failed

Trump, Musk, Lutnick, and Bezos Hijacked Infrastructure Bill Broadband Grant Money, Causing A Giant Mess

A quick refresher: There was originally $42.5 billion in taxpayer-funded broadband grants headed to the states thanks to the 2021 infrastructure bill most Republicans voted against (yet routinely try ...


Techdirt
Jun 8, 2026 - techdirt.com
Article Keywords: hands-on::-3, windows server, registry, powershell, wmi, azure, entra, intune, patch tuesday::2, critical, warning, fix, issue, failed, script

Microsoft answers what you must do as Windows 11 Secure Boot deadline hits in days

Microsoft’s second Secure Boot AMA reveals crucial details ahead of the June 24 KEK certificate expiration. While Windows 11 PCs won't suddenly stop booting, IT admins must manually intervene for devi...


Windows Latest
Jun 8, 2026 - windowslatest.com
Article Keywords: entra, critical, breaking, sso

The economic value of data centres to Ireland

The Minister for Enterprise, Tourism and Employment, Peter Burke, today published “The Value of Data Centres to Ireland”, an independent report prepared by KPMG which assesses the economic contributio...


Irish Tech News
Jun 8, 2026 - irishtechnews.ie
Article Keywords: critical, warning, breaking

Zillow co-founder and Seattle tech icon Rich Barton takes up residence in Las Vegas

Rich Barton, who co-founded Zillow and Expedia in the Seattle area, says he's now officially a Las Vegas resident, citing an empty nest and a new chapter. His move comes amid a heated debate over Wash...


GeekWire
Jun 8, 2026 - geekwire.com
Article Keywords: breaking, sso

UK boffin bait lands 18 international researchers

Global Talent visa program aims to draw in dissatisfied scientists from countries including the US


www.theregister.com - Articles
Jun 8, 2026 - theregister.com
Article Keywords: critical, sso

Cyera and Logicalis UK&I partner to help organisations take control of data risk in the AI era

Organisations are rapidly accelerating their adoption of AI, with appetite increasing by 90% over the past 12 months, according to recent CIO research; however, many are finding that ambition is outpa...


Irish Tech News
Jun 8, 2026 - irishtechnews.ie
Article Keywords: phishing::2, issue

NSO Group back in Meta's crosshairs after alleged WhatsApp targeting

Zuckercorp says surveillance-for-hire vendor was still running phishing operations after federal court told it to knock it off


www.theregister.com - Articles
Jun 8, 2026 - theregister.com
Article Keywords: phishing::2

WhatsApp says it disrupted new NSO spyware phishing attacks

WhatsApp has detected and stopped spear-phishing campaigns allegedly conducted by the NSO Group after investigating user reports of social engineering attacks. [...]


BleepingComputer
Jun 8, 2026 - bleepingcomputer.com
Article Keywords: review::-3, windows server, active directory, domain controller, dns, cve::2, vulnerability::2, exploit::2, ransomware::2, phishing::2, remote code execution::2, defender::2, credential theft::2, critical, incident, fix, bug

8th June – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 1st June, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES DentaQuest, a U.S. dental benefits administrator owned...


Check Point Research
Jun 8, 2026 - research.checkpoint.com
Article Keywords: entra, vulnerability::2

Minimus Expands Enterprise Security Platform with General Availability of Advanced Supply Chain Controls

Minimus, a pioneer in cloud vulnerability reduction, today introduced two major enterprise capabilities: Minimus Supply Chain Protection and minicli. Now generally available, these solutions provide o...


TechRepublic
Jun 8, 2026 - techrepublic.com
Article Keywords: issue, troubleshoot, error

Xerox desktop scanner memory allocation issue?

$1 submitted by /u/Kirihuna


Reddit : K-12 Systems Administrators
Jun 8, 2026 - reddit.com
Article Keywords: rdp, breaking

WWDC 2026 News Hub live from Apple Park: iOS 27, new Siri, more

I’m inside Apple Park this morning for WWDC 2026. Today, Apple is expected to unveil its next round of major software updates, including iOS 27, macOS 27, and much more. There’s also an all-new versio...


9to5Mac
Jun 8, 2026 - 9to5mac.com
Article Keywords: fix, workaround, troubleshoot

Replacement for BitMeter & DU Meter?

Both are/were excellent programs, but for one reason or another neither appears compatible to run on W10 for one lame reason or another. Unless someone has a workaround for the no BFE or the Net F...


Windows 10 Help Forums
Jun 8, 2026 - tenforums.com
Article Keywords: registry, azure, remote code execution::2, issue, sso, ci/cd, pipeline

GitHub nukes 70+ Microsoft repos, breaks CI/CD pipelines, following suspected worm infections

Miasma worm shapeshifts, but cloud secret-scouting remains the goal


www.theregister.com - Articles
Jun 8, 2026 - theregister.com
Article Keywords: azure, critical, error

Confidential Live Migration Enables Secure Azure VM Transfers without Reboots

Microsoft is enhancing cloud security and reliability with Confidential Live Migration for Azure. This new feature is designed to enable live migration of confidential virtual machines without comprom...


Petri IT Knowledgebase
Jun 8, 2026 - petri.com
Article Keywords: review::-3, price::-3,  specs ::-3, registry, rsat, attack surface::2, alert, fix, bug, error, failed, latency, gateway, script, pipeline, iac

Long-Running Agents

The following article originally appeared on Addy Osmani’s blog and is being reposted here with the author’s permission. A long-running AI agent can keep making progress over hours, days, or weeks. It...


Radar
Jun 8, 2026 - oreilly.com
Article Keywords: review::-3, entra, office 365, exchange online, sharepoint, defender for endpoint, defender for cloud, vulnerability::2, exploit::2, phishing::2, defender::2, credential theft::2, urgent, incident, alert, issue, conditional access, sso, script

AI brands as bait: How threat actors are using the AI hype in social engineering

As threat actors operationalize AI to accelerate attacks, they are also leveraging the wider global interest around AI itself as a social engineering lure. The post AI brands as bait: How threat actor...


Microsoft Security Blog
Jun 8, 2026 - microsoft.com
Article Keywords: vulnerability::2, proxy, automation, ci/cd, pipeline

Minimus Unveils New Supply Chain Protection Proxy and Command-Line Interface for Container Management

Cloud software security firm Minimus today expanded its product portfolio with the general availability of Minimus Supply Chain Protection and minicli. The tools introduce a unified approach to managi...


Nextcloud adds Euro-Office to Hub workplace suite, expands AI assistant – Computerworld
Jun 8, 2026 - computerworld.com
Article Keywords: breaking, issue

FCC gives Amazon Leo more leeway on its satellite deployment schedule

The Federal Communications Commission has freed Amazon from a requirement to deploy the first 1,616 satellites in its Amazon Leo… Read More


GeekWire
Jun 8, 2026 - geekwire.com
Article Keywords: breaking, fix, bug

iOS 27: Here are all the compatible iPhone models

Apple announced iOS 27 today at WWDC 2026. The update focuses on upgrades to Siri, new Apple Intelligence features, and a slew of bug fixes and performance improvements. There are also big changes to ...


9to5Mac
Jun 8, 2026 - 9to5mac.com
Article Keywords: review::-3, rsat, smb, vulnerability::2, incident, issue, sso

Compliance-Led IT for Regulated SMBs: How the Right MSP Helps You Strengthen Security, Improve Audit Readiness, and Support Industry-Specific Needs

For small and midsize organizations in regulated industries, IT is no longer just about keeping systems up and running. It is about protecting sensitive data, documenting controls, reducing operationa...


RMON Networks
Jun 8, 2026 - rmonnetworks.com
Article Keywords: entra, breaking, sso

Hydrogen aviation startup ZeroAvia retreats from Seattle area as it scales back ambitions

Highlighting the immense difficulty of decarbonizing the skies, high-profile hydrogen startup ZeroAvia — backed by Amazon and Bill Gates — has pivoted to a downscaled product line and halted Washingto...


GeekWire
Jun 8, 2026 - geekwire.com
Article Keywords: phishing::2

Meta: NSO Tried Targeting WhatsApp Users Despite Court Order

Meta says WhatsApp disrupted new NSO-linked phishing attacks and is asking a court to hold the spyware firm in contempt. The post Meta: NSO Tried Targeting WhatsApp Users Despite Court Order appeared ...


TechRepublic
Jun 8, 2026 - techrepublic.com
Article Keywords: ransomware::2, incident, issue

Ransomware sends Illinois high school on an early summer vacation

Meanwhile, 13 schools in Wales affected by separate attack


www.theregister.com - Articles
Jun 8, 2026 - theregister.com
Article Keywords: entra, fix

Microsoft Build ignored the most barren part of Windows 11, and it's one only third-party developers can fix

Microsoft highlighted AI agents and native apps at Build, but the Windows 11 Widgets panel saw no improvements and still lacks useful options.


Latest from Windows Central
Jun 8, 2026 - windowscentral.com
Article Keywords: cve::2, zero-day::2, vulnerability::2, exploit::2, ransomware::2, critical, fix, bug, vpn, firewall, gateway, sso

Ransomware crims got a month-long head start on Check Point VPN 0-day that now has a fix

Scumbags, including a Qilin ransomware affiliate, began hitting this hole May 7


www.theregister.com - Articles
Jun 8, 2026 - theregister.com
Article Keywords: rsat, script

Say hi to "Siri AI"—Apple announces new, more "conversational" voice assistant

New features coming this fall alongside two-tiered, Google-powered AI model overhaul.


Ars Technica - All content
Jun 8, 2026 - arstechnica.com
Article Keywords: ntfs, fix

Microsoft reveals Windows 11 will bulk delete files at least 30% faster, and it’s only the start

Microsoft has confirmed Windows 11 will soon delete files at least 30% faster, with similar speed boosts coming for other file operations soon. The post Microsoft reveals Windows 11 will bulk delete f...


Windows Latest
Jun 8, 2026 - windowslatest.com
Article Keywords: breaking, alert

iOS 27 adds independent volume settings for alarms and timers, and for alerts and system sounds

With iOS 27, users will no longer have to rely on a single volume setting for ringtones, alerts, alarms, and system sounds. Here are the details. more…


9to5Mac
Jun 8, 2026 - 9to5mac.com
Article Keywords: phishing::2

Meta alleges NSO violated spyware injunction with new WhatsApp attacks

WhatsApp disrupted spear phishing attempts, asks court to hold NSO in contempt.


Ars Technica - All content
Jun 8, 2026 - arstechnica.com
Article Keywords: zero-day::2, vulnerability::2, exploit::2, ransomware::2, critical, incident, vpn

Check Point VPN Flaw Exploited Since Early May

A newly discovered, critical zero-day vulnerability is under attack; a Qilin ransomware affiliate has been blamed for at least one incident.


darkreading
Jun 8, 2026 - darkreading.com
Article Keywords: review::-3, rsat, azure, entra, critical, warning, fix, issue, bug, error, latency, automation, script, pipeline

The Agentic Reckoning: Enterprise AI organizations have a runtime problem, not a model problem — and most are building the wrong solution

In Q1 2026, VentureBeat's Pulse Research surfaced the “Governance Mirage”: the gap between the governance org charts enterprises had drawn and the control layers they had actually built. Forty-three p...


VentureBeat
Jun 8, 2026 - venturebeat.com
Article Keywords: phishing::2

WhatsApp slams Isreali firm, NSO Group, for trying to spy on its users

WhatsApp says it stopped an attempted spying campaign linked to Israeli firm NSO Group that used spear phishing tactics against users. Read more...


Neowin
Jun 8, 2026 - neowin.net
Article Keywords: entra, exploit::2, issue

NCOSE CEO Calls Porn A National Security Threat; Urges Federal Obscenity Prosecutions

In totally sane and not-crazy anti-pornography activism news, the National Center on Sexual Exploitation (NCOSE) considers online pornography a national security threat. This may be the stupidest thin...


Techdirt
Jun 8, 2026 - techdirt.com
Article Keywords: review::-3,  specs ::-3,  vs ::-3, azure, microsoft 365, warning, issue, bug, resolution, error, failed, automation, script, pipeline

Microsoft Build 2026 recap: vision, launches, and top sessions

Catch up on Microsoft Build 2026 with the vision lead-off, top developer announcements, and must-watch sessions across the Microsoft developer ecosystem. The post Microsoft Build 2026 recap: vision, l...


Microsoft for Developers
Jun 8, 2026 - devblogs.microsoft.com
Article Keywords: critical, breaking, failed, latency, sso, script, pipeline

Researchers trained an open source AI search agent, Harness-1, that outperforms GPT-5.4 on recalling relevant information

A joint research collaboration between researchers at the University of Illinois at Urbana-Champaign (UIUC), UC Berkeley, and the open source AI-native vector database platform Chroma unveiled Harness...


VentureBeat
Jun 8, 2026 - venturebeat.com
Article Keywords: review::-3,  vs ::-3, entra, exploit::2, phishing::2, credential theft::2, fix, script, pipeline

Norks blast 250+ fake job offers to developers over 6 weeks to try and snarf creds and crypto

When an unsolicited job offer sounds too good to be true …


www.theregister.com - Articles
Jun 9, 2026 - theregister.com
Article Keywords: fix, issue

WatchOS 27 Fixes Siri at Last, but You May Need to Buy a New Apple Watch to Get It

The biggest WatchOS 27 upgrade could finally make Siri useful on the wrist. But most older watches are being forced to sit this one out.


CNET
Jun 9, 2026 - cnet.com
Article Keywords: cve::2, security update::2

CVE-2026-11463 USCiLab Cereal Shared Pointer type confusion

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-49975 Apache HTTP Server: mod_http2 denial of service

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50265 Rejected reason: This CVE ID was assigned as a duplicate of CVE-2026-50292

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-40930 LIBPNG: Chunk smuggling in push-mode APNG parser via unconsumed chunk body

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-10879 DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50261 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in syncchangecounter()

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, resolution

CVE-2026-50256 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in font alias resolution due to libxfont2 name length mismatch

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50262 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: out-of-bounds read/write in glx changedrawableattributes

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50260 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in freecounter()

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50259 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb setmap request via mapwidths indexing

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50257 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free in misyncdestroyfence()

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50258 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: stack buffer overflow in xkb key types due to unchecked shift levels

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50263 Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free information disclosure in createsaverwindow()

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-27142 URLs in meta content attribute actions are not escaped in html/template

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-32280 Unexpected work during chain building in crypto/x509

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-27140 Code execution vulnerability in SWIG code generation in cmd/go

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-27143 Missing bound checks can lead to memory corruption in safe Go in cmd/compile

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-27144 Miscompilation allows memory corruption via CONVNOP-wrapped array copy in cmd/compile

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, remote code execution::2, security update::2

CVE-2026-25243 redis-server RESTORE invalid memory access may allow remote code execution

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, remote code execution::2, security update::2

CVE-2026-23631 redis-server Lua use-after-free may allow remote code execution

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, remote code execution::2, security update::2

CVE-2026-23479 redis-server use-after-free in unblock client flow may allow remote code execution

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-33811 Crash when handling long CNAME response in net

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-39820 Quadratic string concatentation in consumeComment in net/mail

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-39836 Panic in Dial and LookupPort when handling NUL byte on Windows in net

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-42499 Quadratic string concatenation in consumePhrase in net/mail

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, proxy

CVE-2026-42501 Malicious module proxy can bypass checksum database in cmd/go

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-25681 Invoking incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-39835 Invoking server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, memory leak

CVE-2026-39827 Invoking memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-46598 Invoking pathological inputs can lead to client panic in golang.org/x/crypto/ssh/agent

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-39833 Invoking key constraints not enforced in golang.org/x/crypto/ssh/agent

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-42502 Invoking incorrect handling of HTML elements in foreign content in golang.org/x/net/html

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-42496 Archive::Tar versions before 3.08 for Perl extract symlinks with attacker controlled targets outside the extraction directory

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-40528 OpenSC < 0.27.0 Buffer Overrun in do_key_value() via profile.c

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-40510 OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, issue

CVE-2026-42789 Non-CA certificate accepted as intermediate issuer in public_key path validation

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: dns, cve::2, security update::2

CVE-2026-42790 nameConstraints DNS bypass via subject CommonName fallback in public_key hostname verification

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-48962 IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output glob

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2025-15649 IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-42250 Off-by-One Leading to Out-of-Bounds Write in bzip2

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-48959 IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, exploit::2, security update::2

CVE-2026-50031 ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Management Interface (IPMI) specification defines a set of interfaces for platform management. It is implemented by a large number of hardware manufacturers to support system management. It is most commonly used for sensor reading (e.g., CPU temperatures through the ipmi-sensors command within FreeIPMI) and remote power control (the ipmipower command). The ipmi-oem client command implements a set of a IPMI OEM commands for specific hardware vendors. If a user has supported hardware, they may wish to use the ipmi-oem command to send a request to a server to retrieve specific information. Two subcommands "ipmi-oem dell get-active-directory-config" and "ipmi-oem fujitsu get-sel-entry-long-text" were found to have exploitable buffer overflows on response messages.

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, bug

CVE-2026-46250 MIPS: Work around LLVM bug when gp is used as global register variable

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, fix

CVE-2026-46272 coresight: tmc-etr: Fix race condition between sysfs and perf mode

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-42504 Quadratic complexity in WordDecoder.DecodeHeader in mime

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, error

CVE-2026-42507 Arbitrary inputs are included in errors without any escaping in net/textproto

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50292 In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-27145 Inefficient candidate hostname parsing in crypto/x509

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-50219 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_GetBuffer, XML_Parse, XML_ParseBuffer, XML_ParserFree, or XML_ParserReset from within handlers in cases of a policy violation. Thus, a use-after-free can occur,

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, routing

CVE-2026-37460 Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message.

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-10722 cilium ebpf LoadCollectionSpec/LoadCollectionSpecFromReader btf.go loadRawSpec integer overflow

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-43958 Rrdtool: rrdtool: stack buffer overflow allows local code execution or denial of service

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, script

CVE-2026-8643 pip can extract console_scripts and gui_scripts outside installation directory

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2

CVE-2026-7774 tarfile.data_filter path traversal bypass allows writing outside the extraction directory

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: smb, entra

Discovery of an Active Wind from the Milky Way’s Central Black Hole

One of the fun aspects of astrophysics is that much of it involves phenomena which you cannot exactly study from up close, with the supermassive black hole (SMBH) at the …read more


Blog – Hackaday
Jun 9, 2026 - hackaday.com
Article Keywords: rdp, breaking

9to5Mac Daily: June 8, 2026 – WWDC 2026 recap

Listen to a recap of the top stories of the day from 9to5Mac. 9to5Mac Daily is available on iTunes and Apple’s Podcasts app, Stitcher, TuneIn, Google Play, or through our dedicated RSS feed for Overca...


9to5Mac
Jun 9, 2026 - 9to5mac.com
Article Keywords: zero-day::2, vulnerability::2, exploit::2

Google patches new Chrome zero-day flaw exploited in the wild

Google has released emergency updates to patch another Chrome zero-day vulnerability that has been exploited in the wild, the fifth such flaw patched since the start of the year. [...]


BleepingComputer
Jun 9, 2026 - bleepingcomputer.com
Article Keywords: zero-day::2, vulnerability::2, exploit::2, ransomware::2, critical, bug, vpn

CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day

CISA has ordered U.S. government agencies to secure their Check Point Remote Access VPN and Mobile Access deployments against a critical vulnerability exploited in zero-day attacks by Qilin ransomware...


BleepingComputer
Jun 9, 2026 - bleepingcomputer.com
Article Keywords: review::-3, gaming::-3, xbox::-3, windows server, active directory, group policy, registry, smb, azure, intune, microsoft 365, onedrive, wsus, cve::2, fix, issue, bug, known issue, resolution, troubleshoot, error, failed, tcp/ip, sso, script

Windows 11 Insider Previews: What’s in the latest build?

Windows 11 25H2 has been publicly released, but behind the scenes, Microsoft is constantly working to improve the newest version of Windows. The company frequently rolls out preview builds to members ...


Nextcloud adds Euro-Office to Hub workplace suite, expands AI assistant – Computerworld
Jun 9, 2026 - computerworld.com
Article Keywords: remote desktop, cve::2, vulnerability::2, security update::2

CVE-2024-49075 Windows Remote Desktop Services Denial of Service Vulnerability

To comprehensively address this vulnerability Windows 11 Version 26H1 for ARM64-based Systems and Windows 11 Version 26H1 for64-based Systems have been added to the Security Updates table. Microsoft r...


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: remote desktop, cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2024-49123 Windows Remote Desktop Services Remote Code Execution Vulnerability

To comprehensively address this vulnerability Windows 11 Version 26H1 for ARM64-based Systems and Windows 11 Version 26H1 for64-based Systems have been added to the Security Updates table. Microsoft r...


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: remote desktop, cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2024-49132 Windows Remote Desktop Services Remote Code Execution Vulnerability

To comprehensively address this vulnerability Windows 11 Version 26H1 for ARM64-based Systems and Windows 11 Version 26H1 for64-based Systems have been added to the Security Updates table. Microsoft r...


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: remote desktop, cve::2, vulnerability::2, security update::2

CVE-2025-21330 Windows Remote Desktop Services Denial of Service Vulnerability

To comprehensively address this vulnerability Windows 11 Version 26H1 for ARM64-based Systems and Windows 11 Version 26H1 for64-based Systems have been added to the Security Updates table. Microsoft r...


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: remote desktop, cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2024-43582 Remote Desktop Protocol Server Remote Code Execution Vulnerability

To comprehensively address this vulnerability Windows 11 Version 26H1 for ARM64-based Systems and Windows 11 Version 26H1 for64-based Systems have been added to the Security Updates table. Microsoft r...


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-42897 Microsoft Exchange Server Spoofing Vulnerability

Added links to June 2026 Exchange Server security updates. Microsoft recommends installing this updates as soon as possible.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-45585 Windows BitLocker Security Feature Bypass Vulnerability

Added links to June 2026 Windows security updates. Microsoft recommends installing this updates as soon as possible.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: microsoft 365, cve::2, vulnerability::2, security update::2

CVE-2026-41100 Microsoft 365 Copilot for Android Spoofing Vulnerability

Added Microsoft Excel for Android, Microsoft Word for Android, Microsoft Loop for Android, Microsoft PowerPoint for Android and Microsoft OneNote for Android softwares to the Security Updates table. ...


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-21530 Windows Rich Text Edit Elevation of Privilege Vulnerability

Added Office softwares to the Security Updates table. Customers that are running supported versions of Office are encouraged to update to the indicated versions to be protected from this vulnerability...


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2020-17103 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

To comprehensively address the vulnerability identified by CVE-2020-17103, Microsoft recommends installing the June 2026 updates for your Windows operating systems.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: dns, cve::2, vulnerability::2, security update::2

CVE-2026-41108 Windows DNS Client Elevation of Privilege Vulnerability

Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privileges locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: sharepoint, cve::2, vulnerability::2, security update::2, script

CVE-2026-45467 Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: sharepoint, cve::2, vulnerability::2, security update::2, script

CVE-2026-45468 Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-45469 Microsoft Excel Remote Code Execution Vulnerability

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-45475 Microsoft Office Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-45472 Microsoft Office Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-45471 Microsoft Word Remote Code Execution Vulnerability

Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-45474 Microsoft Office Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: sharepoint, cve::2, vulnerability::2, security update::2, script

CVE-2026-45479 Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-45486 Microsoft Word Remote Code Execution Vulnerability

Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-45485 Microsoft Office Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2, script

CVE-2026-45483 Microsoft Office Project Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Project Server allows an authorized attacker to perform spoofing over a network.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, security update::2, issue

CVE-2025-10263 ARM: CVE-2025-10263 Completion of affected memory accesses might not be guaranteed by completion of a TLBI [kernel]

No cwe for this issue in Windows Kernel allows an unauthorized attacker to elevate privileges locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-40409 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-40404 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

Information published.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-33828 Windows Device Health Attestation (DHA) Elevation of Privilege Vulnerability

Trust boundary violation in Windows Attestation allows an authorized attacker to elevate privileges locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-34335 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-42902 Microsoft PowerToys Elevation of Privilege Vulnerability

Improper authorization in Microsoft PowerToys allows an authorized attacker to elevate privileges locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-44817 Microsoft Excel Remote Code Execution Vulnerability

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-44818 Microsoft Excel Remote Code Execution Vulnerability

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-44819 Microsoft Office Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-44820 Microsoft Excel Remote Code Execution Vulnerability

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-44821 Microsoft Office Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-44823 Microsoft Excel Remote Code Execution Vulnerability

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-44824 Microsoft Office Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: sharepoint, cve::2, vulnerability::2, security update::2, script

CVE-2026-45453 Microsoft SharePoint Server Spoofing Vulnerability

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-45456 Microsoft Outlook and Word Remote Code Execution Vulnerability

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-45458 Microsoft Outlook and Word Remote Code Execution Vulnerability

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-45460 Microsoft Office Information Disclosure Vulnerability

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, remote code execution::2, security update::2

CVE-2026-45461 Microsoft Office Remote Code Execution Vulnerability

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-45466 Microsoft Word Information Disclosure Vulnerability

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to disclose information locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-45487 Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability

Time-of-check time-of-use (TOCTOU) race condition in Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-45490 .NET SDK Elevation of Privilege Vulnerability

Improper authorization in .NET allows an authorized attacker to elevate privileges locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2, resolution

CVE-2026-45491 .NET Tampering Vulnerability

Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com
Article Keywords: cve::2, vulnerability::2, security update::2

CVE-2026-45605 Windows Bluetooth Service Elevation of Privilege Vulnerability

Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.


MSRC Security Update Guide
Jun 9, 2026 - msrc.microsoft.com