security support

Winsage
December 23, 2025
Windows 11 has a market share of 53.7%, while Windows 10 has 42.7%. Approximately 700 million devices are running Windows 11. Microsoft has urged users to upgrade from Windows 10, which officially ended support in October 2025, leaving users without updates or security patches. Users on Windows 10 may need to purchase an extended security package for protection until October 2026. Hardware compatibility issues, particularly with the Trusted Platform Module 2.0 requirement, may prevent some users from upgrading. The 25H2 update for Windows 11 introduced various enhancements but also created new issues. Windows 12's release is uncertain, with expectations for AI advancements, but details are speculative.
Winsage
October 20, 2025
A proof-of-concept exploit has been released for a critical vulnerability in Microsoft’s Windows Server Update Services (WSUS), identified as CVE-2025-59287, which allows unauthenticated attackers to execute remote code with SYSTEM privileges. The vulnerability has a CVSS v3.1 score of 9.8 and is caused by unsafe deserialization of untrusted data in WSUS’s handling of AuthorizationCookies. It affects all supported Windows Server versions from 2012 to 2025, particularly through the GetCookie() endpoint. The exploit involves sending a manipulated AuthorizationCookie via an unauthenticated HTTP POST request to the WSUS ClientWebService endpoint. A publicly available PoC demonstrates how to generate a payload that can execute commands like "calc.exe." Microsoft has classified the flaw as “Exploitation More Likely” and advises immediate application of security updates. Organizations are encouraged to isolate WSUS servers and monitor for unusual SOAP traffic.
Winsage
October 15, 2025
Windows 10 has officially entered a new phase with the end of its non-security support. Users enrolled in the Extended Security Updates (ESU) program will continue to receive essential security updates for at least another year. Microsoft Defender will continue to provide detection and protection capabilities for Windows 10 throughout the ESU period. Microsoft will also provide security intelligence updates for Microsoft Defender Antivirus protection until October 2028. Microsoft recommends users either continue with Windows 10 under the ESU or consider upgrading to Windows 11.
Search