A critical security vulnerability, identified as CVE-2025-49678, has been discovered within the Windows NTFS (New Technology File System). This flaw allows authorized attackers to elevate their privileges locally through a null pointer dereference. Microsoft has acknowledged the issue and...
Microsoft’s recent Windows update released in April 2025 has introduced an unexpected and somewhat controversial element to the Windows file system: an empty folder named "inetpub" appearing on many user systems. This update, part of Windows 11 24H2 and Windows 10 cumulative patches (notably...
cve-2025-21204
cybersecurityalerts
directory hijacking
directory junction
directory junctions
filesystem security
inetpub folder
it administration
it security news
microsoft patch
microsoft updates
mklink utility
patch management
security patch
security patches
security researcher
security vulnerability
symlink attack
symlink security
system administration
system folder security
system security
system security best practices
update risks
windows 10
windows 11
windows 2025 update
windows iis
windows process activation
windows security
windows system files
windows system folders
windows update
windows update patch
windows vulnerabilities
windows vulnerabilities mitigation
CISA Unveils 8 ICS Vulnerabilities: A Wake-Up Call for IT and Industrial Systems
On March 4, 2025, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) released eight new advisories detailing vulnerabilities in key Industrial Control Systems (ICS). These bulletins, issued under the...
On October 16, 2024, the Cybersecurity and Infrastructure Security Agency (CISA), along with the FBI, NSA, and several international partners, released a critical advisory warning organizations about the cyber threat posed by Iranian cyber actors. Dubbed "Iranian Cyber Actors Brute Force and...