Windows-Security

8 posts

/internet-explorer-webbrowser-rce/internet-explorer-webbrowser-rce.png
Internet Explorer Can Still Take Over a Fully Patched Windows PC in 2026

June 8, 2026

Internet Explorer can still take over a fully patched Windows machine, years after Microsoft retired it in 2022. The code that ran it was never removed from …

/windows-dns-rce-2026/featured-image.png
A Critical Windows DNS Flaw Lets Attackers Run Code on Any Machine Without Logging In

May 13, 2026

Microsoft patched a critical heap buffer overflow in the Windows DNS Client. An attacker needs no account and no help from the person sitting at the machine to …

/ghostlock-smb-file-lock-ransomware/featured-image.png
GhostLock Delivers Ransomware Impact on Windows Without Touching a Single File

May 11, 2026

GhostLock locks every shared file on any Windows network in minutes using nothing but a standard login, and every security tool watching stays completely …

/microsoft-edge-cleartext-passwords/featured-image.png
Microsoft Edge Stores Every Saved Password in Cleartext Memory at Startup

May 5, 2026

Microsoft Edge loads every saved password into memory the moment the browser opens. They sit there in plain readable text for the entire session, even for sites …

/phantomrpc-windows-privilege-escalation/featured-image.png
PhantomRPC: Windows Has a Privilege Escalation Problem Microsoft Won't Fix

April 28, 2026

Last week at Black Hat Asia in Singapore, a Kaspersky researcher publicly demonstrated PhantomRPC: five separate ways to take any standard Windows service …

/msbuild-lolbin-fileless-attack/featured-image.png
MSBuild LOLBin: How Hackers Run Malware on Windows Without Leaving a Trace

April 14, 2026

MSBuild.exe is a LOLBin, a legitimate Windows tool being abused to run malware on fully patched machines without dropping a single file on disk, and Windows …

/desckvb-rat-fileless-malware-2026/featured-image.png
DesckVB RAT Uses Windows' Own Tools to Stay Hidden and Leaves Almost Nothing Behind

April 11, 2026

A Remote Access Trojan called DesckVB has been actively hitting systems throughout 2026, running almost entirely inside memory with barely anything written to …

/gootloader-zip-evasion-2026/featured-image.png
GootLoader Tricks Security Tools Into Seeing a Safe File While Windows Runs Malware

January 18, 2026

GootLoader is back. This week, researchers discovered their newest trick: a way to make security tools completely blind. Your antivirus scans the ZIP file. …