Arab Press

بالشعب و للشعب
Wednesday, Nov 19, 2025

Microsoft rolls out Windows 10 security fix after NSA warning

Microsoft rolls out Windows 10 security fix after NSA warning

The NSA claim that they revealed flaw that could be exploited by hackers to create malicious software, so if you believe them (as you absolutely should) you better update your Windows now, so only the good guys can have a back door to your computer.
Microsoft is rolling out a security fix to Windows 10 after the US National Security Agency (NSA) warned the popular operating system contained a highly dangerous flaw that could be used by hackers. Reporting the vulnerability represents a departure for the NSA from its past strategy of keeping security flaws under wraps to exploit for its own intelligence needs.

The NSA revealed during a press conference on Tuesday that the “serious vulnerability” could be used to create malicious software that appeared to be legitimate. The flaw “makes trust vulnerable”, the NSA director of cybersecurity, Anne Neuberger, said in a briefing call to media on Tuesday.

If the vulnerability had been successfully exploited, an attacker would have been able to conduct “man-in-the-middle attacks” and decrypt confidential information on user connections to the affected software, Microsoft said.

Microsoft said it had not seen any evidence that hackers had used the technique discovered by the NSA.

“Customers who have already applied the update, or have automatic updates enabled, are already protected,” said Jeff Jones, a senior director at Microsoft, in a statement.

The vulnerability has a broad reach: as of 2017, Windows 10 was used on 400m computers.

The Washington Post reported on Tuesday that the NSA had discovered the flaw in recent weeks and alerted Microsoft to the problem. The issue was announced on Microsoft’s January “Patch Tuesday”, the second Tuesday of each month, when the company typically releases security improvements for operating systems and other software.

Priscilla Moriuchi, who retired from the NSA in 2017 after running its east Asia and Pacific operations, said this was a good example of the “constructive role” that the NSA could play in improving global information security.

Moriuchi, now an analyst at the US cybersecurity firm Recorded Future, said it was probably a reflection of changes made in 2017 to how the US determines whether to disclose a major vulnerability or exploit it for intelligence purposes.

The revamping of what’s known as the “vulnerability equities process” put more emphasis on disclosing unpatched vulnerabilities whenever possible to protect core internet systems and the US economy and general public.

The NSA has previously been criticized after it took advantage of vulnerabilities in Microsoft products to deploy hacking tools against adversaries and kept the technology multinational in the dark about it for years.

When one of those tools was dramatically leaked to the internet by a group calling itself ShadowBrokers, it was deployed against targets around the globe by hackers of all stripes.

In the most dramatic case, a group used the tool to unleash a huge malware outbreak dubbed WannaCry in 2017. The data-wiping worm wrought global havoc, affecting what Europol estimated was 200,000 computers in more than 150 countries.

Disclosing the vulnerability to Microsoft was “a significant step for the National Security Agency”, said Rick Holland, chief information security officer at Digital Shadows, a San Francisco-based provider of digital risk protection solutions.

“Make no mistake, though; the NSA will continue to hoard zero-days and leverage them as required to accomplish their objectives,” he said, referencing the agency’s previous policy of not alerting the public to potential vulnerabilities.
Newsletter

Related Articles

Arab Press
0:00
0:00
Close
President Trump Hosts Saudi Crown Prince Mohammed bin Salman in Washington Amid Strategic Deal Talks
Saudi Crown Prince to Press Trump for Direct U.S. Role in Ending Sudan War
Trump Hosts Saudi Crown Prince: Five Key Takeaways from the White House Meeting
Trump Firmly Defends Saudi Crown Prince Over Khashoggi Murder Amid Washington Visit
Trump Backs Saudi Crown Prince Over Khashoggi Killing Amid White House Visit
Trump Publicly Defends Saudi Crown Prince Over Khashoggi Killing During Washington Visit
President Donald Trump Hosts Saudi Crown Prince Mohammed bin Salman at White House to Seal Major Defence and Investment Deals
Saudi Arabia’s Solar Surge Signals Unlikely Shift in Global Oil Powerhouse
Saudi Crown Prince Receives Letter from Iranian President Ahead of U.S. Visit
Saudi Arabia’s Crown Prince Begins Washington Visit to Cement Long-Term U.S. Alliance
Saudi Crown Prince Meets Trump in Washington to Deepen Defence, AI and Nuclear Ties
Saudi Arabia Accelerates Global Mining Strategy to Build a New Economic Pillar
Crown Prince Mohammed bin Salman Arrives in Washington to Reset U.S.–Saudi Strategic Alliance
Saudi-Israeli Normalisation Deal Looms, But Riyadh Insists on Proceeding After Israeli Elections
Saudis Prioritise US Defence Pact and AI Deals, While Israel Normalisation Takes Back Seat
Saudi Crown Prince’s Washington Visit Aims to Advance Defence, AI and Nuclear Cooperation
Saudi Delegation Strengthens EU–MENA Security Cooperation in Lisbon
Saudi Arabia’s Fossil-Fuel Dominance Powers Global Climate Blockade
Trump Organization Engages Saudi Government-Owned Real-Estate Deal Amid White House Visit
Trump Organization Nears Billion-Dollar Saudi Real Estate Deal Amid White House Diplomacy
Israel Presses U.S. to Tie Saudi F-35 Sale to Formal Normalisation
What We Know Now: Donald Trump’s Financial Ties to Saudi Arabia
Saudi Arabia’s Ambitious Defence Wish List for Washington: From AI Drones to Nuclear Umbrella
Analysis Shows China, Saudi Arabia and UAE among Major Recipients of Climate Finance Loans
Why a Full Saudi–Israel Normalisation Deal Eludes Trump’s Reach
Trump Presses Saudi Arabia to Normalise Ties with Israel as MBS Prepares for White House Visit
US-Saudi Summit Set for November 18 Seeks Defence Pact and Israel Normalisation Momentum
Comcast CEO Brian Roberts Visits Saudi Arabia Amid Potential Bid for Warner Bros. Discovery
Cristiano Ronaldo Embraces Saudi Arabia’s 2034 World Cup Vision with Key Role
Saudi Arabia’s Execution Campaign Escalates as Crown Prince Readies U.S. Visit
Trump Unveils Middle East Reset: Syria Re-engaged, Saudi Ties Amplified
Saudi Arabia to Build Future Cities Designed with Tourists in Mind, Says Tourism Minister
Saudi Arabia Advances Regulated Stablecoin Plans with Global Crypto Exchange Support
Saudi Arabia Maintains Palestinian State Condition Ahead of Possible Israel Ties
Chinese Steel Exports Surge 41% to Saudi Arabia as Mills Pivot Amid Global Trade Curbs
Saudi Arabia’s Biban Forum 2025 Secures Over US$10 Billion in Deals Amid Global SME Drive
Saudi Arabia Sets Pre-Conditions for Israel Normalisation Ahead of Trump Visit
MrBeast’s ‘Beast Land’ Arrives in Riyadh as Part of Riyadh Season 2025
Cristiano Ronaldo Asserts Saudi Pro League Outperforms Ligue 1 Amid Scoring Feats
AI Researchers Claim Human-Level General Intelligence Is Already Here
Saudi Arabia Pauses Major Stretch of ‘The Line’ Megacity Amid Budget Re-Prioritisation
Saudi Arabia Launches Instant e-Visa Platform for Over 60 Countries
Dick Cheney, Former U.S. Vice President, Dies at 84
Saudi Crown Prince to Visit Trump at White House on November Eighteenth
Trump Predicts Saudi Arabia Will Normalise with Israel Ahead of 18 November Riyadh Visit
Entrepreneurial Momentum in Saudi Arabia Shines at Riyadh Forward 2025 Summit
Saudi Arabia to Host First-Ever International WrestleMania in 2027
Saudi Arabia to Host New ATP Masters Tournament from 2028
Trump Doubts Saudi Demand for Palestinian State Before Israel Normalisation
Viral ‘Sky Stadium’ for Saudi Arabia’s 2034 World Cup Debunked as AI-Generated
×