hotpatching

  1. KB5061096 PowerShell Hotpatch: Fast, Low-Downtime Security Update

    Microsoft’s May 13, 2025 hotpatch for Windows PowerShell, released as KB5061096, is a narrowly scoped security update aimed at reducing immediate exposure for hotpatch‑eligible systems while preserving uptime for high‑availability deployments; it applies only to devices enrolled in Microsoft’s...
  2. KB5064010: Windows 11 LTSC 2024 Hotpatch - Security-Only, Restart-Free Updates

    Microsoft released KB5064010 on August 12, 2025 — a hotpatch that updates eligible Windows 11 Enterprise LTSC 2024 and certain Windows Server Azure Edition builds to OS Build 26100.4851, delivering narrowly scoped security hardening without the usual restart required by cumulative updates...
  3. KB5065474 Windows 11 Enterprise Hotpatch: OS Build 26100.6508, PSDirect & Secure Boot Advisory

    Microsoft released a targeted hotpatch—KB5065474—on September 9, 2025, for Windows 11 Enterprise (24H2 / LTSC 2024) that advances eligible devices to OS Build 26100.6508, delivers a focused app-compatibility / UAC repair, and includes two operational advisories administrators must treat as high...
  4. KB5065474 Hotpatch for Windows 11 Enterprise: UAC Fix, PSDirect Parity, 26100.6508

    Microsoft released a targeted hotpatch on September 9, 2025 — KB5065474 — for Windows 11 Enterprise (version 24H2 / LTSC 2024) that advances eligible machines to OS Build 26100.6508, delivers a focused app-compatibility/UAC fix, bundles a servicing stack update (SSU), and warns administrators...
  5. KB5066360 PowerShell Hotpatch: Fix PSDirect Connections (OS Build 26100.6569)

    Microsoft has released KB5066360, a targeted hotpatch for Windows PowerShell that addresses PowerShell Direct (PSDirect) connectivity failures and a narrow host‑to‑guest exposure introduced by the September 2025 security/hotpatch cycle; the package updates PowerShell assemblies to OS Build...
  6. KB5065474: Windows 11 Enterprise Hotpatch with 26100.6508, PSDirect parity, UAC fix

    September 9, 2025 — KB5065474: Hotpatch for Windows 11 Enterprise (24H2) — Full summary, impact, and deployment guidance TL;DR — What you need to know right now Microsoft released hotpatch KB5065474 on September 9, 2025 for Windows 11 Enterprise (24H2 / LTSC 2024). After installation eligible...
  7. KB5066360: No-Restart PSDirect Hotpatch Fix for Hyper-V Handshake

    Microsoft has released KB5066360, a targeted hotpatch for Windows PowerShell that corrects an interoperability and security regression affecting PowerShell Direct (PSDirect) when host and guest virtual machines are unevenly patched; the update is a no-restart hotpatch for eligible systems and...
  8. September 2025 Patchday: Office RCE Risks & 80 CVEs, Strategic Patch Playbook

    Microsoft’s September 9, 2025 Patchday brought a dense, operationally important set of fixes for Microsoft Office alongside a much larger ecosystem update—roughly eighty CVEs across Windows, Office, Azure and related components—forcing administrators to treat this month’s release as more than...
  9. Microsoft September Patch Tuesday: 80+ CVEs, SMB Audit, and JSON vulnerability fixes

    Microsoft’s September Patch Tuesday delivers a heavy, operationally urgent security package: more than 80 CVEs across Windows, Office, Hyper‑V, Azure components and developer libraries, including eight items Microsoft rates critical and two vulnerabilities that were publicly disclosed before the...
  10. September 2025 Patch Tuesday: Emergency RCE fixes, DES removal, HPC Pack alert

    Microsoft pushed its September 2025 monthly security updates on Patch Tuesday, delivering a broad set of fixes that address dozens of vulnerabilities across Windows client, server, and Microsoft server products — including multiple emergency severity fixes for remote code execution and a...
  11. KB5065474 Hotpatch for Windows 11 LTSC 2024: OS Build 26100.6508 & PSDirect Fix

    Microsoft released a September 9, 2025 hotpatch—KB5065474—for Windows 11 Enterprise LTSC 2024 that advances hotpatch coverage to a new OS build (26100.6508), addresses a notable UAC/MSI compatibility issue, and includes a known‑issue advisory that affects PowerShell Direct (PSDirect)...
  12. Windows 11 24H2 September 2025 KB5065426: Security Update & Secure Boot Readiness

    Microsoft has released the September 2025 cumulative security update for Windows 11, version 24H2 — KB5065426 (OS Build 26100.6584) — a combined Latest Cumulative Update (LCU) and Servicing Stack Update (SSU) that delivers security hardening, targeted bug fixes, AI component updates for Copilot+...
  13. KB5066360: Windows 11 LTSC 2024 PowerShell hotpatch for PSDirect fix

    Microsoft has published KB5066360, a hotpatch that updates Windows PowerShell on Windows 11 Enterprise LTSC 2024 to OS Build 26100.6569, addressing a specific PSDirect connectivity failure that could, under narrow conditions, allow unauthorized non-administrator access between host and guest...
  14. Intune Windows Quality Update policies: per-update control arriving 2026

    Microsoft has added a new chapter to Windows update management: Microsoft Intune will gain dedicated Windows Quality Update management policies that let administrators approve, approve automatically, and stage individual quality updates — including non-security preview and out‑of‑band releases —...
  15. August 2025 Windows Update Roundup: 25H2, AI, and Enterprise Readiness

    Microsoft’s August rollout tightened the screws on enterprise readiness while pushing AI deeper into Windows’ DNA — security hardenings, lifecycle milestones, and practical tooling dominated the month as Microsoft readied Windows 11 version 25H2 for general release. The update cadence in August...
  16. Granular Windows Quality Update Management in Intune: Per-Update Approvals

    Microsoft has quietly put a new tool on the 2026 roadmap that promises to change how IT teams manage quality updates for Windows on corporate PCs: Windows Quality Update management policies in Microsoft Intune will let administrators approve and roll out individual quality updates — including...
  17. August 2025 Windows Servicing Wave: OOBE Patches, AI, and Backup GA

    Microsoft’s August 2025 servicing wave is the most operationally significant Windows 11 release window in months: it moves day‑one patching into the Out‑of‑Box Experience (OOBE), promotes Windows Backup for Organizations to general availability, extends hotpatching across server and (limited)...
  18. Azure Update Manager: Centralized Patch Orchestration for Cloud, On-Prem, and Hybrid

    Microsoft's latest move to centralize and simplify enterprise patching — pushing Azure Update Manager as the recommended path for orchestrating Windows updates across cloud, on-premises, and hybrid fleets — promises to change how IT teams plan, schedule, and recover from update events while also...
  19. Windows Server 2025: Automation, Hotpatching, and the KB5044284 Lesson

    Microsoft’s latest move to automate and AI‑assist Windows Server 2025 upgrades promises to cut the friction and risk that have long dogged enterprise patch cycles, but the effort is also a reminder that automation without clear metadata and robust controls can make things worse as quickly as it...
  20. Scale Virtualization-based Security (VBS) for Hotpatch Readiness on Windows

    Hotpatch-ready fleets start with one infrastructure choice: enable Virtualization‑based Security (VBS) correctly and at scale — doing so is the single most important step to ensure your Windows devices are eligible for Microsoft’s hotpatch model and to materially reduce reboot-driven downtime...