msrc

  1. CVE-2024-49081: Critical Windows Privilege Elevation Vulnerability Exposed

    In a revealing disclosure unveiled by the Microsoft Security Response Center (MSRC), a potentially critical vulnerability has been identified; this is CVE-2024-49081, emblematic of an Elevation of Privilege vulnerability affecting the Wireless Wide Area Network Service (WwanSvc) in Windows...
  2. CVE-2024-49011: Critical SQL Server Native Client Vulnerability Revealed

    On November 12, 2024, the Microsoft Security Response Center (MSRC) published crucial information about a newly identified vulnerability, CVE-2024-49011, which affects the SQL Server Native Client. This vulnerability is significant due to its potential to allow remote code execution (RCE), a...
  3. CVE-2024-43644: Elevation of Privilege Vulnerability in Windows Client-Side Caching

    A recent update from the Microsoft Security Response Center (MSRC) has unveiled a significant vulnerability designated CVE-2024-43644, impacting Windows systems. This issue stems from Windows Client-Side Caching (CSC), presenting an elevation of privilege risk that could pose serious...
  4. CVE-2024-26235: Understanding Windows Update Vulnerability and Its Implications

    The Microsoft Security Response Center (MSRC) has recently updated its acknowledgment regarding CVE-2024-26235, a vulnerability related to Windows Update Stack that could lead to elevation of privilege. This update is primarily informational and does not indicate any change in the impact or...
  5. CVE-2024-38050: Understanding Windows Elevation of Privilege Vulnerability

    The Microsoft Security Response Center (MSRC) recently published information regarding a new vulnerability tracked as CVE-2024-38050. This security concern is categorized as an elevation of privilege vulnerability that affects the Windows Workstation Service. Understanding this vulnerability is...
  6. Announcing the Security Researcher Quarterly Leaderboard

    Right before Black Hat USA 2019, we announced our new researcher recognition program, and at Black Hat we announced the top researchers from the previous twelve months. Since it’s easier to track your progress with regular updates than with just an annual report, we are excited to announce the...
  7. MSRC is going to ROOTCON!

    The Microsoft Security Response Center (MSRC) works with partners all over the world to protect Microsoft customers. This week we’re headed to the Philippines to meet security researchers and bounty hunters at ROOTCON 13! Planning on attending ROOTCON? If you want to learn more about how you can...
  8. Announcing 2019 MSRC Most Valuable Security Researchers

    Earlier today we announced MSRC’s 2018-2019 Most Valuable Security Researchers at Black Hat. The following 75 researchers hail from all corners of the world and possess varied experience and skills, yet all of them have contributed to securing the Microsoft’s customers and the broader ecosystem...
  9. Meet the MSRC at Black Hat 2019

    We’re getting close to Black Hat, and we hope to see you there. Here’s where you can find members of the Microsoft Security Response Center if you’d like to say hello, ask a question about a report you made, discuss a recent blog article, or just show us pictures of your dog. Wednesday, August 7...
  10. Inside the MSRC – Building your own security incident response process

    This is the third and last in a series of posts that looks at how Microsoft responds to elevated threats to customers through the Microsoft Security Response Center’s (MSRC) Software and Services Incident Response Plan (SSIRP). Our previous posts discussed how Microsoft protects customers...
  11. Inside the MSRC – Anatomy of a SSIRP incident

    This is the second in a series of blog posts that shares how the MSRC responds to elevated threats to customers through the Software and Services Incident Response Plan (SSIRP). In our last blog post, we looked at the history of the Microsoft Security Response Center and SSIRP, and how...
  12. BlueHat Shanghai 2019: Amplifying the power of defensive partnerships around the world

    Earlier this week Link Removed brought together security researchers and hundreds of cybersecurity professionals from China and across Asia to explore the latest topics in cybersecurity research. Including presentations from Qihoo 360, Baidu, Alibaba and the Chinese Academy of Sciences, BlueHat...
  13. Announcing the Microsoft Azure DevOps Bounty program

    The Microsoft Security Response Center (MSRC) is pleased to announce the launch of the Link Removed program, a program dedicated to providing rock-solid security for our DevOps customers. Starting January 17, 2019, we’re excited to offer rewards up to US$20,000 for eligible vulnerabilities in...
  14. Should You Send Your Pen Test Report to the MSRC?

    Every day, the Microsoft Security Response Center (MSRC) receives vulnerability reports from security researchers, technology/industry partners, and customers. We want those reports, because they help us make our products and services more secure. High-quality reports that include proof of...
  15. October 2018 Security Update Release

    Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found in the Link Removed. MSRC team Continue reading...
  16. Standing behind “MSRC Listens”

    Last week at BlueHat’s “MSRC Listens” session, I took the stage with Mechele Gruhn, manager of the Vulnerability Response PM team, to explain how MSRC is changing our communication, workflows, and tooling to deliver an improved user experience for our partners in the security research community...
  17. September 2018 Security Update Release

    Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found in the Link Removed. MSRC team Continue reading...
  18. VIDEO Inside MSRC: Sharing Our Story & Customer Tips

    For the last 20 years, the Microsoft Security Response Center has been an integral part of Microsoft’s commitment to customer security. We are often called on to talk about the work we do and how customers can apply the lessons we have learned over that period to better their security posture...
  19. August 2018 Security Update Release

    Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found on the Link Removed. MSRC team Continue reading...
  20. The Making of the Top 100 Researcher List

    At Black Hat USA each year, we unveil the Top 100 Security Researcher list to reflect the amazing engagement we get from the community. During this period, we had several thousand researchers engage with the Microsoft Security Response Center (MSRC). We appreciate all the partnership and...