Skip to main content
COSMICBYTEZLABS
NewsSecurityHOWTOsToolsStudyTraining
ProjectsNewsletterHire MeAbout
Subscribe

Press Enter to search or Esc to close

News
Security
HOWTOs
Tools
Study
Training
Projects
Newsletter
Hire Me
About
RSS Feed
Reading List
Subscribe

Stay in the Loop

Get the latest security alerts, tutorials, and tech insights delivered to your inbox.

Subscribe NowFree forever. No spam.
COSMICBYTEZLABS

Your trusted source for IT intelligence, cybersecurity insights, and hands-on technical guides.

1310+ Articles
157+ Guides

CONTENT

  • Latest News
  • Security Alerts
  • HOWTOs
  • Checklists
  • Projects
  • Exam Prep

RESOURCES

  • Search
  • Browse Tags
  • Newsletter Archive
  • Reading List
  • RSS Feed

COMPANY

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Service

© 2026 CosmicBytez Labs. All rights reserved.

System Status: Operational
All tags
58 articles

#Windows

All CosmicBytez Labs articles tagged #Windows, across news, security advisories, how-to guides, and projects.

  • NewsJun 2, 2026

    Microsoft's Coreutils Project Brings Linux Commands to Windows

    Microsoft announced Coreutils for Windows at Build 2026, bringing widely used Linux command-line utilities — ls, grep, cat, awk, and more — to Windows as native applications without requiring WSL or third-party tools.

  • SecurityJun 2, 2026

    CVE-2018-25427: Arm Whois 3.11 Stack-Based Buffer Overflow RCE

    A critical stack-based buffer overflow vulnerability in Arm Whois 3.11 (CVSS 9.8) allows remote attackers to execute arbitrary code by supplying oversized input, overwriting the structured exception handler with shellcode.

  • SecurityJun 2, 2026

    CVE-2026-27788: Fujitsu ServerView Agents Privilege Escalation to SYSTEM

    An incorrect permission assignment vulnerability in Fujitsu ServerView Agents for Windows V11.60.04 and earlier allows a local authenticated attacker to escalate privileges to SYSTEM on the affected server.

  • NewsJun 1, 2026

    Critical Windows Netlogon RCE Flaw Now Exploited in Attacks

    Belgium's national cybersecurity authority (CCB) has issued an urgent warning that threat actors are actively exploiting a recently patched critical Windows Netlogon Remote Protocol vulnerability that allows unauthenticated remote code execution on domain controllers.

  • HOWTOJun 1, 2026

    Osquery Endpoint Visibility & Threat Hunting

    Use SQL to query your endpoints like a database. Deploy osquery across Linux and Windows hosts to surface process trees, network connections, user activity, and persistence mechanisms — then build detection queries for real-world threat hunting.

  • NewsMay 29, 2026

    Microsoft Says Zero-Day Public Releases Are 'Never Justifiable' as Researcher Threatens More Drops

    Microsoft publicly condemned unauthorized zero-day disclosures as 'never justifiable' after a security researcher published working proof-of-concept...

  • NewsMay 27, 2026

    Can You Enforce Strong Active Directory Password Rules Without Frustrating Users?

    Strong AD passwords don't have to mean frustrated users — passphrases, breached-password checks, and self-service resets balance security and usability.

  • NewsMay 26, 2026

    Microsoft: Domain Controller Lookup May Fail on Windows

    Microsoft has confirmed a new known issue affecting Windows Server 2016 systems where domain controller lookups fail after installing the KB5087537 May 2026.

  • NewsMay 24, 2026

    Making Vulnerable Drivers Exploitable Without Hardware: The

    A new technical analysis reveals that many Windows kernel-mode drivers can be exploited from user mode without the physical hardware they were designed...

  • NewsMay 22, 2026

    Trend Micro Warns of Apex One Zero-Day Exploited in the Wild

    Trend Micro has patched an Apex One zero-day vulnerability actively exploited in attacks targeting Windows systems. The flaw, discovered in the company's...

  • NewsMay 18, 2026

    MiniPlasma Windows 0-Day Enables SYSTEM Privilege

    A new Windows kernel privilege escalation zero-day dubbed MiniPlasma, released by researcher Chaotic Eclipse, grants SYSTEM-level access on fully patched...

  • NewsMay 18, 2026

    Hackers Earn $1,298,250 for 47 Zero-Days at Pwn2Own Berlin

    Pwn2Own Berlin 2026 has concluded with security researchers earning over $1.29 million in prizes after successfully exploiting 47 zero-day vulnerabilities...

  • NewsMay 17, 2026

    New Windows ''MiniPlasma'' Zero-Day Exploit Gives SYSTEM

    A cybersecurity researcher has released a proof-of-concept exploit for a Windows privilege escalation zero-day dubbed MiniPlasma that lets attackers gain...

  • SecurityMay 16, 2026

    DAEMON Tools Lite Supply Chain Attack via Trojanized

    A supply chain attack compromised official DAEMON Tools Lite installation packages distributed from daemon-tools.cc between April 8 and May 5, 2026,...

  • NewsMay 15, 2026

    Microsoft Exchange, Windows 11 Hacked on Second Day of

    On day two of Pwn2Own Berlin 2026, competitors demonstrated 15 unique zero-day vulnerabilities and collected $385,750 in awards, successfully exploiting...

  • NewsMay 14, 2026

    Researcher Drops YellowKey, GreenPlasma Windows Zero-Days

    A security researcher has publicly released two unpatched Windows zero-day exploits: YellowKey, a BitLocker bypass requiring physical access, and...

  • NewsMay 14, 2026

    Windows Zero-Days Expose BitLocker Bypasses and CTFMON

    An anonymous researcher has publicly disclosed two new unpatched Windows zero-days — YellowKey enabling BitLocker bypass and GreenPlasma targeting CTFMON...

  • NewsMay 13, 2026

    Microsoft May 2026 Patch Tuesday: 137 Flaws Fixed, Zero

    Microsoft's May 2026 Patch Tuesday addresses 137 vulnerabilities including nine critical flaws — but for the first time in two years, not a single...

  • NewsMay 13, 2026

    Microsoft May 2026 Patch Tuesday Fixes 120 Flaws, No

    Microsoft's May 2026 Patch Tuesday delivers security updates for 120 vulnerabilities across Windows, Edge, Office, Azure, and more — with no zero-days...

  • NewsMay 13, 2026

    Microsoft Patches 138 Vulnerabilities Including DNS and

    Microsoft's May 2026 Patch Tuesday addresses 138 security vulnerabilities across its product portfolio, including 30 rated Critical — with notable DNS...

  • NewsMay 13, 2026

    Windows BitLocker Zero-Day Gives Access to Protected

    A cybersecurity researcher has published proof-of-concept exploits for two unpatched Windows vulnerabilities — YellowKey (BitLocker bypass) and...

  • NewsMay 9, 2026

    Fake OpenAI Repository on Hugging Face Pushes Infostealer

    A malicious repository impersonating OpenAI's "Privacy Filter" project climbed to Hugging Face's trending list and delivered information-stealing malware...

  • NewsMay 9, 2026

    JDownloader Site Hacked to Replace Installers with Python

    The official website for JDownloader, one of the most widely-used open-source download managers, was compromised to distribute malicious Windows and Linux...

  • ProjectMay 5, 2026

    BC Docker Manager: An Electron + Next.js Desktop App for

    Native Windows app for managing Business Central Docker containers — log viewer, backup tooling, AI-powered troubleshooting via Claude, and an HNS-error.

  • NewsMay 2, 2026

    Microsoft Tests Modern Windows Run Dialog With Dark Mode

    Microsoft is testing a redesigned Run dialog for Windows 11 that brings dark mode support and improved performance over the legacy Win+R dialog that has...

  • NewsApr 29, 2026

    CISA Adds Actively Exploited ConnectWise and Windows Flaws

    CISA has added two actively exploited vulnerabilities to its Known Exploited Vulnerabilities catalog — CVE-2024-1708 affecting ConnectWise ScreenConnect...

  • NewsApr 29, 2026

    Vect 2.0 Ransomware Acts as Wiper Thanks to Design Error

    The emerging Vect 2.0 ransomware — deployed against TeamPCP supply chain attack victims — permanently destroys files larger than 131KB due to a critical...

  • NewsApr 29, 2026

    VECT 2.0 Ransomware Irreversibly Destroys Files Over 131KB

    Threat hunters warn that VECT 2.0 ransomware contains a critical flaw in its encryption implementation that acts more like a wiper for files over 131KB...

  • NewsApr 27, 2026

    Incomplete Windows Patch Opens Door to Zero-Click Attacks

    A Microsoft Windows vulnerability originally patched in a prior Patch Tuesday was incompletely remediated, leaving a residual attack surface that...

  • NewsApr 26, 2026

    Microsoft Patch Tuesday, March 2026 Edition

    Microsoft patched 77 security vulnerabilities in March 2026 with no actively exploited zero-days, a welcome reprieve following February's five-zero-day...

  • NewsApr 26, 2026

    Patch Tuesday, April 2026 Edition

    Microsoft released patches for 167 security vulnerabilities in April 2026, including an actively exploited SharePoint Server zero-day and the publicly...

  • NewsApr 25, 2026

    Microsoft Rolls Out Revamped Windows Insider Program

    Microsoft is rolling out a revamped Windows Insider Program experience as part of broader plans to address performance and reliability concerns affecting...

  • NewsApr 25, 2026

    Microsoft to Roll Out Entra Passkeys on Windows in Late

    Microsoft is rolling out passkey support for phishing-resistant passwordless authentication to Microsoft Entra-protected resources from Windows devices...

  • NewsApr 24, 2026

    Windows Update Gets New Controls to Reduce Forced Restarts

    Microsoft is rolling out Windows Update improvements that give users more control over how updates are installed while reducing disruption from frequent...

  • NewsApr 22, 2026

    Kyber Ransomware Gang Uses Post-Quantum Encryption to

    A new ransomware operation called Kyber is targeting Windows systems and VMware ESXi endpoints, with one variant implementing Kyber1024 post-quantum...

  • NewsApr 19, 2026

    Microsoft Drops Its Second-Largest Monthly Patch Batch on

    Microsoft's April 2026 Patch Tuesday addressed 169 CVEs — the second-largest monthly update in company history — including one actively exploited...

  • NewsApr 19, 2026

    Microsoft Issues Patches for SharePoint Zero-Day and 168

    Microsoft's April 2026 Patch Tuesday addresses a record 169 security vulnerabilities including a SharePoint zero-day actively exploited in the wild, 8...

  • NewsApr 17, 2026

    Recently Leaked Windows Zero-Days Now Exploited in Active

    Threat actors are actively exploiting three recently disclosed Windows security vulnerabilities that allow attackers to gain SYSTEM or elevated...

  • NewsApr 11, 2026

    In Other News: Cyberattack Stings Stryker, Windows

    A weekly roundup of notable cybersecurity stories: Iran-linked hackers wipe 200,000 Stryker devices, the BlueHammer Windows zero-day PoC goes public,...

  • NewsApr 9, 2026

    Microsoft Suspends Dev Accounts for High-Profile Open

    Microsoft has suspended developer accounts used to maintain several prominent open-source projects without prior notice or a quick reinstatement path,...

  • NewsApr 6, 2026

    Disgruntled Researcher Leaks BlueHammer Windows Zero-Day

    A security researcher operating under the aliases 'Chaotic Eclipse' and 'Nightmare-Eclipse' has publicly released exploit code for an unpatched Windows...

  • NewsMar 28, 2026

    Bearlyfy Hits Russian Firms with Custom GenieLocker

    Pro-Ukrainian hacktivist group Bearlyfy has conducted over 70 cyberattacks against Russian companies since January 2025, recently deploying a custom...

  • SecurityMar 28, 2026

    CVE-2026-30303 — Axon Code OS Command Injection via

    The command auto-approval module in Axon Code contains an OS Command Injection vulnerability. An incompatible Unix-based shell-quote parser is used on...

  • NewsMar 17, 2026

    Microsoft Shares Fix for Windows C: Drive Access Issues on

    Microsoft has published a multi-step recovery procedure for Samsung Galaxy Book 4 laptops running Windows 11 24H2/25H2 where the Samsung Galaxy Connect...

  • NewsMar 17, 2026

    Microsoft Halts Forced Global Rollout of Microsoft 365

    Microsoft has stopped automatically installing the Microsoft 365 Copilot app on Windows devices outside the European Economic Area, reversing a bundling...

  • NewsMar 14, 2026

    Microsoft Releases Windows 11 OOB Hotpatch to Fix Three

    Microsoft has pushed an out-of-band hotpatch (KB5084597) to Windows 11 Enterprise devices to address three integer-overflow RCE flaws in RRAS, one rated...

  • SecurityFeb 25, 2026

    Microsoft MSHTML Framework Security Feature Bypass

    An actively exploited protection mechanism failure in the Windows MSHTML (Trident) engine allows attackers to bypass browser security zones and shell...

  • SecurityFeb 20, 2026

    Microsoft February 2026 Patch Tuesday Fixes Six Actively

    Microsoft's February 2026 Patch Tuesday addresses roughly 60 vulnerabilities including six actively exploited zero-days across Windows, Office, and Azure...

  • SecurityFeb 11, 2026

    Microsoft Patch Tuesday February 2026: 6 Actively Exploited

    Microsoft's February 2026 Patch Tuesday addresses 60 vulnerabilities including 6 actively exploited zero-days and 3 publicly disclosed issues, with...

  • SecurityFeb 11, 2026

    CVE-2026-21533: Windows Remote Desktop Services Zero-Day

    Actively exploited zero-day in Windows RDS allows authenticated attackers with low privileges to escalate to SYSTEM. Public exploit code available....

  • SecurityFeb 10, 2026

    Windows SmartScreen Bypass Under Active Exploitation

    Actively exploited Windows Shell vulnerability bypasses SmartScreen protection, allowing malicious files to execute without security warnings. Patch...

  • ChecklistFeb 10, 2026

    Server Hardening Security Checklist

    Comprehensive checklist for hardening Linux and Windows servers before production deployment. Covers OS configuration, network security, access controls,...

  • HOWTOFeb 4, 2026

    IT Service Dashboards with PowerShell Universal

    Build interactive IT service management dashboards using PowerShell Universal. Create real-time client portals, automated ticketing views, and...

  • HOWTOFeb 3, 2026

    Docker Windows Containers: Native Engine Setup Guide

    Deploy Docker Engine natively on Windows without Docker Desktop. Covers installation, Windows container mode, lifecycle management, and troubleshooting.

  • HOWTOFeb 3, 2026

    Intune Device Enrollment: Windows Autopilot Setup

    Configure Windows Autopilot for zero-touch device deployment. Covers hardware hash import, deployment profiles, ESP configuration, and user-driven enrollment.

  • HOWTOJan 25, 2026

    Windows Security Baseline Audit: CIS Benchmark Compliance

    Automate Windows security baseline checks using PowerShell. Validate configurations against CIS benchmarks for password policies, audit settings, and...

  • HOWTOJan 24, 2026

    Windows Security Event Log Analysis: Detect Threats and

    Learn to analyze Windows Security Event Logs to detect brute force attacks, lateral movement, privilege escalation, and other security threats using PowerShell.

  • SecurityJan 14, 2026

    Microsoft January 2026 Patch Tuesday: 114 Flaws Fixed, One

    Microsoft's first security update of 2026 addresses 114 vulnerabilities including three zero-days. One flaw is actively exploited in the wild with CISA...