Antivirus

Microsoft warns that hackers are exploiting a severe Windows security flaw

Homeland Security issued a rare warning about a Windows Server vulnerability that would give attackers complete control of every computer on a network. The CISA warning said at the time that it assumes active exploitation is occurring in the wild, advising everyone to apply the August patch that Microsoft release. Microsoft on Thursday noted that…

Homeland Security issued a rare warning about a Windows Server vulnerability that would give attackers complete control of every computer on a network.
The CISA warning said at the time that it assumes active exploitation is occurring in the wild, advising everyone to apply the August patch that Microsoft release.
Microsoft on Thursday noted that it has already observed attacks that incorporate the new Windows flaw.

Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) issued a rare emergency alert last week, over what appears to be one of the worst Windows flaws in recent history. Security researchers have identified a vulnerability so severe that it received a maximum severity score (10.0), prompting the agency to advise all governmental agencies to update their computers using Microsoft’s first patch for the issue that was launched a few weeks ago. The issue is so severe that a second update will be released early next year to further deal with the matter.

When CISA released the warning, it advised everyone to “go get patching,” including governmental agencies, state and local governments, private companies, and the general public. It also said at the time that it assumed that “active exploitation of this vulnerability is occurring in the wild.” Microsoft has since confirmed those assumptions, indicating that it found evidence of hackers taking advantage of the Zerologon vulnerability.

Zerologon is very dangerous because it allows malicious individuals to take over computers on a network without stealing any credentials beforehand. The attack involves forging an authentication token for a Netlogon functionality, which then opens doors to everything.

A flaw in a cryptographic authentication scheme makes it all possible. After access is granted to the network, the attackers could infect computers with additional malware and extract data from those computers.

Microsoft tweeted an updated on the matter on Thursday, saying that it is “is actively tracking threat actor activity using exploits for the CVE-2020-1472 Netlogon EoP vulnerability, dubbed Zerologon.” The company said that it observed “attacks where public exploits have been incorporated into attacker playbooks,” without detailing any security incidents.

Despite the warning from CISA, not everyone may have patched their network, which explains why some hackers might already be exploiting the attack. The flaw affects most supported versions of Windows Server, KrebsOnSecurity explains. That includes Server 2008 through Server 2019.

Most Windows users would not even have to deal with the patch themselves. Still, they could be directly impacted if the governmental agency or company they worked at is targeted via a Zerologon attack before admins patch the network.

Microsoft might not be the only company to have observed malicious activity involving the new exploit. Tenable research engineering manager Scott Caveza said that samples of .NET executables called “SharpZeroLogon.exe” had been uploaded to VirusTotal, a Google service that scans suspicious files against antivirus programs.
Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

Antivirus

Why There’s Simply No Need For Android Antivirus Apps Anymore

Many Android users install an antivirus app on a new device without thinking twice. In 2026, there are good reasons to skip that step entirely…

Many Android users install an antivirus app on a new device without thinking twice. In 2026, there are good reasons to skip that step entirely…
Read More

Continue Reading
Antivirus

‘People use smartphones more but invest less in their security’: New report claims McAfee and Norton remain the most loved antivirus brands as users ditch lesser-known security products for free tools like Microsoft Defender or Apple Xprotect

Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Most smartphone users rely on built-in security without additional protection Paid antivirus adoption on mobile devices continues to decline steadily A significant share


  • Most smartphone users rely on built-in security without additional protection
  • Paid antivirus adoption on mobile devices continues to decline steadily
  • A significant share of users remains unprotected or unaware of safeguards

Most Americans now use their smartphones more than their computers, but very few spend money to protect those phones from hackers, new research has claimed.

A Cybernews report surveyed over 1,000 American adults, and found only 18% of mobile phone users pay for third-party antivirus software.

Built-in tools like Microsoft Defender and Apple’s XProtect have become the default choice for most people, while McAfee and Norton lead the paid market for the second year in a row.

Latest Videos From

You may like

  • Best antivirus software Best Antivirus Software 2026
  • People using Windows 11 laptops Can Windows 11’s built-in antivirus keep you safe? Microsoft thinks so
  • Norton 36src Premium Norton 360 Premium will protect your devices from AI scams, malware, and identity theft for less than $30

Smartphone owners are skipping extra security protections

Most consumers believe the security features already built into their phones are sufficient for daily use, and see little reason to spend extra money on something they think they already own for free.

Roughly 14% of mobile users say they have no cybersecurity tools installed at all on their devices. Another 16% cannot even name what protections they currently have in place.

On desktop computers, the situation looks very different, with far fewer unprotected machines and much wider adoption of third-party security tools.

Windows Defender and Apple’s native security features now serve as the primary defense for 53% of computer users and 51% of mobile users.

Most people choose these free options because they trust the operating system vendor to provide adequate baseline protection.

Paid antivirus adoption on computers has actually grown by 2% since last year, reaching 41% of users.

On mobile devices, however, third-party antivirus usage has dropped by roughly 10% over the same period, falling from 28% to just 18%.

What to read next

  • Customer at home looking happy because his network is protected by ESET Home Security We all need digital protection and the ESET Home Security Plan is the bees knees
  • A hand holding a mobile phone scans a QR code on a blurry laptop screen. The phone issues a warning that the QR code could be malicious. Microsoft phishing threat report shows 146% surge in quishing
  • Malware attack virus alert , malicious software infection , cyber security awareness training to protect business Time for an upgrade? Report warns outdated operating systems could be the ‘unnecessary risk’ your business forgot about

Mobile users face growing risks

Ransomware attacks targeting smartphones are still less common than those aimed at computers, but the threat landscape is shifting rapidly.

Users who depend solely on the free security tools that came with their phones may be underestimating what modern cybercriminals can do.

Paid subscriptions have gained ground over free alternatives, yet the majority of mobile owners still avoid spending money on dedicated protection.

Cybercrime exposure does influence some users to change their habits, but personal experience is not the main driver of adoption for most people.

Many users employ layered security approach, combining antivirus with VPNs and password managers.

However, the data shows that a large segment of mobile users remain either unprotected or unsure about what safeguards they have.

Established brands like McAfee and Norton continue to benefit from user trust, while lesser-known products struggle to gain acceptance even when their features are comparable.


Google logo on a black background next to text reading

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

Read More

Continue Reading
Antivirus

Surfshark One review: Adequate antivirus protection with caveats

At a glanceExpert’s Rating Pros Clean, extremely simple interface Alternative ID lets you mask your whole identity, not just an email address VPN service is solid Cons Full scans hit PC performance hard Very few settings to adjust Not as many features as similarly priced rivals Our Verdict If VPN coverage is your first priority…

At a glanceExpert’s Rating

Pros

Clean, extremely simple interface

Alternative ID lets you mask your whole identity, not just an email address

VPN service is solid

Cons

Full scans hit PC performance hard

Very few settings to adjust

Not as many features as similarly priced rivals

Our Verdict
If VPN coverage is your first priority…
Read More

Continue Reading
Antivirus

NITDA raises alarm on DeepLoad AI malware attacks, proffers solutions

“Never paste commands from a website into your computer; legitimate software never asks for this. Do not open files named ‘Chrome Setup’ or ‘Firefox Installer’ from USB drives; scan all USB devices with antivirus software before use,” the agency said, warning corporate companies of possible cyber attacks…

“Never paste commands from a website into your computer; legitimate software never asks for this. Do not open files named ‘Chrome Setup’ or ‘Firefox Installer’ from USB drives; scan all USB devices with antivirus software before use,” the agency said, warning corporate companies of possible cyber attacks…
Read More

Continue Reading