Windows Is Under Attack, Microsoft Confirms — Act Now, CISA Warns

Key takeaways:

  • Microsoft has confirmed multiple zero-day vulnerabilities in Windows that are actively being exploited before patches were released.
  • The most critical flaw, CVE-2025-30397, affects all Windows versions and allows remote code execution through the Windows scripting engine.
  • Successful exploitation of this vulnerability can happen via Internet Explorer Mode in Microsoft Edge, commonly used in enterprise systems.
  • The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning advising immediate patching.
  • Security experts stress this issue is high-risk despite Microsoft rating it "important," and urge all users to update without delay.
Windows Is Under Attack, Microsoft Confirms — Act Now, CISA Warns
Site Logo
Forbes
Go to source




Be Part of Something Big

Shifters, a developer-first community platform, is launching soon with all the features. Don't miss out on day one access. Join the waitlist: