// Microsoft 365CRITICAL
Microsoft's August 2026 Patch Tuesday addresses 400+ vulnerabilities including CVE-2026-68820, a Windows Ancillary Function Driver elevation-of-privilege flaw actively exploited by North Korean threat actor Lazarus to deploy FudModule, a kernel-mode rootkit. Check Point disclosed the zero-day exploitation campaign. Two additional publicly disclosed zero-days (CVE-2026-62832 and CVE-2026-72971) were also fixed. Among critical flaws are remote code execution vulnerabilities in SharePoint (CVE-2026-65665), Windows DHCP (CVE-2026-62823), and Azure services.
- Microsoft August 2026 Patch Tuesday fixes 400 flaws, 3 zero-days(opens in a new tab)
- Microsoft Patch Tuesday for August 2026 — Snort rules and promin(opens in a new tab)
- CISA Warns of Windows Ancillary Function 0-Day Vulnerability Exp(opens in a new tab)
- New ShieldBreak Exploit Gives Limited Windows Accounts Full Cont(opens in a new tab)
- Microsoft's nemesis drops new zero-day privilege escalation vuln(opens in a new tab)
- Microsoft August 2026 Patch Tuesday: 421 CVEs Fixed(opens in a new tab)
// Get alerts for Microsoft 365