{"id":292333,"date":"2025-11-15T02:33:11","date_gmt":"2025-11-15T02:33:11","guid":{"rendered":"https:\/\/www.newsbeep.com\/us\/292333\/"},"modified":"2025-11-15T02:33:11","modified_gmt":"2025-11-15T02:33:11","slug":"critical-microsoft-alert-update-windows-10-11-and-server-right-now","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/us\/292333\/","title":{"rendered":"Critical Microsoft Alert \u2014 Update Windows 10, 11 And Server Right Now"},"content":{"rendered":"<p><img decoding=\"async\" class=\" top-image\" src=\"https:\/\/www.newsbeep.com\/us\/wp-content\/uploads\/2025\/11\/1763173991_148_0x0.jpg\" alt=\"Microsoft Windows 10 and 11 logos seen on two laptops, side by side. \" data-height=\"2476\" data-width=\"3715\" fetchpriority=\"high\" style=\"position:absolute;top:0\"\/><\/p>\n<p>Update Windows now \u2014 attacks underway.<\/p>\n<p>NurPhoto via Getty Images<\/p>\n<p>Updated November 14 with details of further Microsoft Windows vulnerabilities that need to be addressed as a matter of some urgency, according to experts, notwithstanding the criticality of the already-exploited Windows Kernel CVE-2025-62215 issue.<\/p>\n<p>At the same time that Google was issuing an <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/12\/act-now---google-chrome-emergency-v8-engine-security-update-confirmed\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/12\/act-now---google-chrome-emergency-v8-engine-security-update-confirmed\/\" target=\"_self\" aria-label=\"emergency update\" rel=\"nofollow noopener\">emergency update<\/a> for <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/09\/restart-google-chrome-142-now-high-rated-security-issues-confirmed\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/09\/restart-google-chrome-142-now-high-rated-security-issues-confirmed\/\" target=\"_self\" aria-label=\"all Chrome browser users\" rel=\"nofollow noopener\">all Chrome browser users<\/a> in response to a high-severity security vulnerability, Microsoft issued a security warning of its own. A newly discovered <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/05\/19\/hackers-make-1-million-in-weekend-zero-day-frenzy\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/05\/19\/hackers-make-1-million-in-weekend-zero-day-frenzy\/\" target=\"_self\" aria-label=\"zero-day\" rel=\"nofollow noopener\">zero-day<\/a> vulnerability in the Windows Kernel can enable an attacker to gain system privileges. Yes, a Windows kernel zero-day. Yes, attackers have already struck. Yes, you need to update now.<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-6\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/14\/all-microsoft-windows-users-warned-as-new-bot-attacks-confirmed\/\" target=\"_blank\" aria-label=\"All Microsoft Windows Users Warned As New Bot Attacks Confirmed\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/14\/all-microsoft-windows-users-warned-as-new-bot-attacks-confirmed\/\" rel=\"nofollow noopener\">ForbesAll Microsoft Windows Users Warned As New Bot Attacks ConfirmedBy Davey Winder<\/a>Update Windows Now As Microsoft Confirms Kernel Zero-Day Attacks<\/p>\n<p>The latest chapter in the <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/04\/20\/587-windows-vulnerabilities---a-microsoft-security-record-breaker\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/04\/20\/587-windows-vulnerabilities---a-microsoft-security-record-breaker\/\" target=\"_self\" aria-label=\"never-ending cybersecurity drama\" rel=\"nofollow noopener\">never-ending cybersecurity drama<\/a> that is Patch Tuesday has been released, and this time it contains no less than 63 vulnerabilities. There\u2019s one, though, that stands out: CVE-2025-62215, an actively exploited zero-day within the Windows Kernel itself. <\/p>\n<p>\u201cWhile exploitation requires an attacker to win a race condition,\u201d Satnam Narang, a senior staff research engineer at Tenable, said, \u201cMicrosoft confirmed that this vulnerability has been actively exploited in the wild.\u201d Narang suggested that this was most likely, considering that CVE-2025-62215 is a privilege escalation flaw, \u201cused as part of post-exploitation activity, following initial access via phishing, social engineering, or another vulnerability.\u201d<\/p>\n<p>While the official <a class=\"color-link\" href=\"https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2025-62215\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" data-ga-track=\"ExternalLink:https:\/\/msrc.microsoft.com\/update-guide\/en-US\/advisory\/CVE-2025-62215\" aria-label=\"Microsoft security advisory\">Microsoft security advisory<\/a> confirmed that \u201cconcurrent execution using shared resource with improper synchronization (&#8216;race condition&#8217;) in Windows Kernel allows an authorized attacker to elevate privileges locally,\u201d and that exploitation in the wild had been detected, others have gone further by way of digging into the Windows Kernel vulnerability. <\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-7\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/14\/amazon-ciso-confirms-hacker-exploit-used-2-zero-day-attacks\/\" target=\"_blank\" aria-label=\"Amazon CISO Confirms Hacker Exploit Used 2 Zero-Day Attacks\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/14\/amazon-ciso-confirms-hacker-exploit-used-2-zero-day-attacks\/\" rel=\"nofollow noopener\">ForbesAmazon CISO Confirms Hacker Exploit Used 2 Zero-Day AttacksBy Davey Winder<\/a><\/p>\n<p>\u201cIt\u2019s likely to affect just about every asset running Microsoft software,\u201d Adam Barnett, lead software engineer at Rapid7, told me, adding that \u201dif all the stars align for the attacker, the prize could be remote code execution as system via the network without any need for an existing foothold.\u201d The good news, aside from the fix being available, is that Barnett doesn\u2019t think CVE-2025-62215 is wormable, but that doesn\u2019t stop him from advising that it remains \u201ca top priority for just about anyone considering how to approach this month\u2019s patches.\u201d<\/p>\n<p>The root cause, as confirmed by Microsoft itself, appears to be <a class=\"color-link\" href=\"https:\/\/cwe.mitre.org\/data\/definitions\/362.html\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" data-ga-track=\"ExternalLink:https:\/\/cwe.mitre.org\/data\/definitions\/362.html\" aria-label=\"CWE-362\">CWE-362<\/a>: Concurrent Execution using Shared Resource with Improper Synchronization and <a class=\"color-link\" href=\"https:\/\/cwe.mitre.org\/data\/definitions\/415.html\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" data-ga-track=\"ExternalLink:https:\/\/cwe.mitre.org\/data\/definitions\/415.html\" aria-label=\"CWE-415\">CWE-415<\/a>: Double Free. The two conditions combined, Ben McCarthy, lead cyber security engineer at Immersive, warns, mean that \u201can attacker with low-privilege local access can run a specially crafted application that repeatedly attempts to trigger this race condition. The goal is to get multiple threads to interact with a shared kernel resource in an unsynchronised way, confusing the kernel&#8217;s memory management and causing it to free the same memory block twice.\u201d This then corrupts the kernel heap, the attacker overwrites memory, and the system execution flow is hijacked. Translation: you are in trouble, lots of it. As Jason Soroko, senior fellow at Sectigo, concluded, \u201cCVE-2025-62215 does not open the door by itself, it flings it wide once an attacker is inside.\u201d<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-8\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/14\/800-million-compromised-passwords---what-you-need-to-know\/\" target=\"_blank\" aria-label=\"800 Million Compromised Passwords \u2014 What You Need To Know\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/14\/800-million-compromised-passwords---what-you-need-to-know\/\" rel=\"nofollow noopener\">Forbes800 Million Compromised Passwords \u2014 What You Need To KnowBy Davey Winder<\/a>CVE-2025-62215 Is Not The Only Microsoft Vulnerability That Needs Your Close Attention<\/p>\n<p>Patch Tuesday is never a one-issue event, no matter how lovely that would be in the fantasy land where cybersecurity is no longer a problem. As already mentioned, the latest monthly security roundup included 63 vulnerabilities. Here are some others that security experts have warned Microsoft users they need to pay particular attention to.<\/p>\n<p>Eliran Partush, a security researcher at Silverfort, thinks that CVE-2025-60704 fits this brief nicely, which is surprising considering that Partush was the person who discovered it. With a Common Vulnerability Scoring System score of 7.5, the Windows Kerberos elevation of privilege vulnerability, or CheckSum as it has ended up being called, can enable an attacker to impersonate users, get hold of sensitive data and, here\u2019s the kicker, remain undetected while so doing. \u201cKerberos has been trusted for decades as the backbone of enterprise authentication,\u201d Partush said, adding that CVE-2025-60704 highlights \u201chow legacy design choices like weak or outdated checksum mechanisms can quietly undermine even the most well-architected security protocols.\u201d<\/p>\n<p>Meanwhile, Tyler Reguly, associate director of security research and development at Fortra, told me that another vulnerability, with a CVSS 9.8 rating, yes, you read that right, is surely worthy of your attention. CVE-2025-60724, as Microsoft has confirmed, could be triggered without user interaction through malicious documents uploaded to web services. \u201cIf I\u2019m a CISO, then CVE-2025-60724 has me worried this month,\u201d Reguly said, \u201cwe have a vulnerability that Microsoft and CVSS agree is critical and an attack vector that requires no user interaction and no privileges, just the ability to upload a file.\u201d<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-9\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/12\/act-now---google-chrome-emergency-v8-engine-security-update-confirmed\/\" target=\"_blank\" aria-label=\"Act Now \u2014 Google Chrome Emergency V8 Engine Security Update Confirmed\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/11\/12\/act-now---google-chrome-emergency-v8-engine-security-update-confirmed\/\" rel=\"nofollow noopener\">ForbesAct Now \u2014 Google Chrome Emergency V8 Engine Security Update ConfirmedBy Davey Winder<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"Update Windows now \u2014 attacks underway. NurPhoto via Getty Images Updated November 14 with details of further Microsoft&hellip;\n","protected":false},"author":2,"featured_media":292334,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[31],"tags":[153143,52129,153141,74,12655,50462,50461,153142,26128,136642,153140],"class_list":["post-292333","post","type-post","status-publish","format-standard","has-post-thumbnail","category-technology","tag-cve-2025-62215","tag-microsoft-security-warning","tag-patch-tuesday","tag-technology","tag-windows","tag-windows-10","tag-windows-11","tag-windows-kernel","tag-windows-security-update","tag-windows-server","tag-wiundows-zero-day-attack"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts\/292333","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/comments?post=292333"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts\/292333\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/media\/292334"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/media?parent=292333"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/categories?post=292333"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/tags?post=292333"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}