• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
weekly threat roundup: microsoft patch tuesday, hp omen, apple

Weekly threat roundup: Microsoft Patch Tuesday, HP Omen, Apple

You are here: Home / General Cyber Security News / Weekly threat roundup: Microsoft Patch Tuesday, HP Omen, Apple
September 16, 2021

Shutterstock

Patch management is considerably a lot easier claimed than performed, and security teams may perhaps usually be forced into prioritising fixes for quite a few business-critical units, all unveiled at as soon as. It’s turn out to be standard, for example, to assume dozens of patches to be introduced on Microsoft’s Patch Tuesday, with other vendors also routinely finding in on the act.

Below, IT Pro has collated the most pressing disclosures from the past 7 times, which include aspects these as a summary of the exploit system, and no matter whether the vulnerability is currently being exploited in the wild. This is in order to give groups a sense of which bugs and flaws could possibly pose the most unsafe rapid security challenges.

✔ Approved From Our Partners
AOMEI Backupper Lifetime

Protect and backup your data using AOMEI Backupper. AOMEI Backupper takes secure and encrypted backups from your Windows, hard drives or partitions. With AOMEI Backupper you will never be worried about loosing your data anymore.

Get AOMEI Backupper with 72% discount from an authorized distrinutor of AOMEI: SerialCart® (Limited Offer).

➤ Activate Your Coupon Code


Microsoft’s Patch Tuesday fixes 86 bugs

Microsoft has fixed a raft of vulnerabilities as element of its most recent wave of Patch Tuesday updates, like an actively exploited flaw in the MSHTML browser motor that powers Internet Explorer.

Making use of the vulnerability, tracked as CVE-2021-40444, hackers are capable to craft malicious ActiveX controls to be utilized in a Microsoft Business office document that hosts the browser rendering motor. They would then concentrate on victims by tricking them into opening these files. This has been mounted as component of 66 updates to main Microsoft products, and 20 updates to the Chromium-based Edge browser.

Microsoft has patched this flaw together with a string of vulnerabilities across Microsoft products and solutions, such as many fixes for the beleaguered Print Spooler component in Windows. 1 of these updates is for a remote code execution flaw tracked as CVE-2021-36958, which was disclosed on 11 August.

‘OMIGOD’ flaws render Azure consumers vulnerable to attack

Also showcased in this month’s Patch Tuesday ended up fixes for four vulnerabilities involving the Open up Administration Infrastructure software package agent, utilised across Microsoft Azure services.

Tracked as CVE-2021-38647, CVE-2021-38648, CVE-2021-38645, and CVE-2021-38649, these critical flaws allow attackers to remotely execute arbitrary code inside a network with a solitary ask for. The flaws are straightforward to exploit, in accordance to the security agency Wiz, with a extensive swathe of community cloud consumers affected.

OMIGOD impacts a range of Azure solutions, which includes Azure Log Analytics, Azure Diagnostics, and Azure Security Center, for the reason that Microsoft works by using OMI as a typical part for quite a few of its management companies for virtual equipment (VMs).

Customers are advised to use the most current patches as quickly as feasible.

HP Omen devices embedded with driver flaw

SentinelLabs researchers have found a flaw in HP Omen gaming equipment that could equip attackers with the resources to escalate consumer privileges and seize management of a equipment.

The now-patched flaw, tracked as CVE-2021-3437, is embedded in the HP Omen Gaming Hub, previously acknowledged as HP Omen Command Heart. This software package involves applications to command overall performance-related options this kind of as admirer speeds, CPU overclocking, and memory configuration.

Unpatched units are vulnerable simply because the Gaming Hub makes use of an open source driver, embedded with this flaw, that could enable cyber criminals to obtain privilege escalation with no necessitating admin rights. Abusing the vulnerability could let attackers disable security products, overwrite system elements, corrupt the operating procedure or conduct other destructive steps.

Apple plugs ForcedEntry hole exploited by NSO Team

The zero-day vulnerability infamously exploited by the spyware developer NSO Group has been fastened in iOS, iPadOS, watchOS, and macOS as portion of Apple’s most up-to-date security updates.

Dubbed ForcedEntry, the exploit targets the vulnerability tracked as CVE-2021-30860 and lets hackers to consider about victims’ methods, in accordance to Citizen Lab. The flaw, which centres on Apple’s image rendering library, lets NSO Group buyers to deliver destructive PDF files to a victim’s gadget by means of iMessage in a zero-simply click attack. It was applied to target Bahraini activists among February and July 2021.

It was produced to properly bypass an in-developed security aspect identified as BlastDoor, which by itself was introduced to tackle a flaw acknowledged as Kismet.


Some components of this short article are sourced from:
www.itpro.co.uk

Previous Post: «microsoft brings passwordless security to consumer accounts Microsoft brings passwordless security to consumer accounts
Next Post: Azure Zero-Day Flaws Highlight Lurking Supply-Chain Risk azure zero day flaws highlight lurking supply chain risk»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.