Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Microsoft Addresses 421 CVEs in August 2026 Patch Update

Microsoft Addresses 421 CVEs in August 2026 Patch Update

Posted on August 11, 2026 By CWS

Microsoft has addressed 421 Common Vulnerabilities and Exposures (CVEs) in its latest Patch Tuesday release for August 2026. Among these, a critical zero-day vulnerability was identified and rectified, which had been exploited in live environments.

Details on the Zero-Day Exploit

The zero-day flaw, labeled CVE-2026-68820, is a use-after-free vulnerability in the Ancillary Function Driver for WinSock (afd.sys). This kernel-mode driver is crucial for the Windows Sockets API. The defect has been used by malicious actors to gain elevated System privileges, although specifics of these attacks remain undisclosed.

Microsoft explains that attackers with local authentication can execute specially crafted applications to trigger a race condition, consequently acquiring SYSTEM privileges without needing user interaction. This exploitation method underscores the need for immediate patch application.

Insights from Cybersecurity Experts

Satnam Narang, a senior staff research engineer at Tenable, emphasized the historical targeting of afd.sys flaws by nation-state actors. He noted that since 2022, multiple zero-days in afd.sys, including CVE-2025-32709, CVE-2025-21418, and CVE-2024-38193, were actively exploited, with the latter linked to North Korean hackers from the Lazarus group.

In addition to the zero-day, Microsoft highlighted CVE-2026-62832, a vulnerability in Windows’s User Profile Service. This flaw allows privilege escalation through improper link resolution before file access, potentially enabling attackers to manipulate another user’s data without interaction.

Additional Vulnerabilities and Implications

Another significant flaw, CVE-2026-72971, involves the Windows Container Isolation FS Filter Driver (unionfs.sys) and could facilitate local tampering. While publicly disclosed, its exploitation in the wild is deemed unlikely by Microsoft.

Security professionals should also be vigilant regarding other critical vulnerabilities, such as those involving remote code execution in Windows DNS server, Windows Deployment Services TFTP server, Microsoft QUIC, and Microsoft HPC Pack. These are identified as CVE-2026-62878, CVE-2026-62893, CVE-2026-62815, and CVE-2026-59124, respectively. Furthermore, CVE-2026-62911 presents an elevation of privilege risk in Exchange Server.

Comprehensive Coverage of Microsoft Products

The August update resolves a total of 236 vulnerabilities in Windows, 98 in Office suites, 30 in SharePoint Server, 26 in Developer Tools, and several more across Azure and Exchange Server. Additionally, it addresses two non-Microsoft CVEs, tackling issues like spoofing and information disclosure in the TPM 2.0 reference implementation.

These updates highlight Microsoft’s proactive stance on cybersecurity, aiming to mitigate potential threats through timely patches. Users and administrators are urged to apply these updates promptly to safeguard systems against exploitation.

Security Week News Tags:afd.sys, CVE, CVE-2026-62832, CVE-2026-68820, CVE-2026-72971, Cybersecurity, Microsoft, Patch Tuesday, security update, Vulnerability, Windows, zero-day

Post navigation

Previous Post: DeadLock Ransomware Enhances Resilience with Blockchain
Next Post: Zoom Security Flaws Enable Remote Code Execution

Related Posts

Sangoma Patches Critical Zero-Day Exploited to Hack FreePBX Servers Sangoma Patches Critical Zero-Day Exploited to Hack FreePBX Servers Security Week News
364,000 Impacted by Data Breach at LexisNexis Risk Solutions 364,000 Impacted by Data Breach at LexisNexis Risk Solutions Security Week News
Russian Hacking Suspect Wanted by the FBI Arrested on Thai Resort Island Russian Hacking Suspect Wanted by the FBI Arrested on Thai Resort Island Security Week News
Minnesota Water Systems Hit by Coordinated Cyberattacks Minnesota Water Systems Hit by Coordinated Cyberattacks Security Week News
Fortinet Confirms FortiCloud SSO Exploitation Against Patched Devices Fortinet Confirms FortiCloud SSO Exploitation Against Patched Devices Security Week News
Key Questions Enterprises Must Ask About Frontier AI Security Key Questions Enterprises Must Ask About Frontier AI Security Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Zoom Security Flaws Enable Remote Code Execution
  • Microsoft Addresses 421 CVEs in August 2026 Patch Update
  • DeadLock Ransomware Enhances Resilience with Blockchain
  • Delta Flight Wi-Fi Hacked Amid Cybersecurity Conference
  • Adobe Issues Urgent Update for Critical Software Flaws

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Zoom Security Flaws Enable Remote Code Execution
  • Microsoft Addresses 421 CVEs in August 2026 Patch Update
  • DeadLock Ransomware Enhances Resilience with Blockchain
  • Delta Flight Wi-Fi Hacked Amid Cybersecurity Conference
  • Adobe Issues Urgent Update for Critical Software Flaws

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark