CERT-In Warns Windows Users of Vulnerabilities in Multiple Versions

13 Aug 2024

The Indian Computer Emergency Response Team (CERT-In), the government’s cybersecurity agency, has recently issued a cautionary alert aimed at Windows users. This advisory highlights several vulnerabilities discovered across various versions of Microsoft Windows, which could potentially enable attackers to gain elevated privileges on targeted systems. The vulnerabilities are particularly concerning for Windows systems that utilize Virtualisation-Based Security (VBS) and Windows Backup functionalities.

Affected Windows Versions

The vulnerabilities span a wide array of Windows versions, including:

  • Windows 10: Versions 1607, 21H2, 22H2, and 1809, applicable to 32-bit, x64, and ARM64-based systems.
  • Windows 11: Versions 21H2, 22H2, and 24H2, for x64 and ARM64-based systems.
  • Windows Server: Windows Server 2016, 2019, 2022, including Server Core installations.

How to Stay Safe

As Microsoft has not yet rolled out security patches to address these vulnerabilities, users are encouraged to adopt several precautionary measures to safeguard their systems:

  1. Activate Firewall and Update Antivirus: Ensure that your system’s firewall is activated and that you have updated antivirus software installed. These tools are essential for detecting and blocking malicious activities.
  2. Be Vigilant Against Phishing Attempts: Cyber attackers often exploit vulnerabilities through deceptive emails and malicious links. Exercise caution when opening emails from unknown senders, and refrain from clicking on suspicious links or downloading unexpected attachments.
  3. Disable Unused Features: If certain features, such as Virtualization-Based Security (VBS) or Windows Backup, are not in use, consider temporarily disabling them. This can help minimize the attack surface and lower the risk of exploitation.
  4. Maintain Reliable Backups: Maintain a reliable and up-to-date backup of your important files. In the unfortunate event of a successful attack, having a backup can be crucial for quick data recovery.
  5. Stay Informed: Stay informed about updates from Microsoft and CERT-In. Promptly apply any patches released to address these vulnerabilities as soon as they become available.

By taking these steps, users can significantly reduce the risk of falling victim to potential cyber-attacks targeting these newly discovered vulnerabilities. While the wait for official patches continues, vigilance and proactive measures remain the best defense.

How to download iCloud for Windows without Microsoft Store?

To download iCloud for Windows without using the Microsoft Store, visit the official Apple website. Navigate to the iCloud for Windows section and look for a standalone installer. Apple provides a direct download link for those who prefer not to use the Microsoft Store. Simply download the installer, run the file, and follow the on-screen instructions to complete the installation.

Where is Microsoft Picture Manager in Windows 10?

Microsoft Office Picture Manager is not included in Office 2013 and later versions nor in Windows 10 by default. However, you can install it as part of the SharePoint Designer 2010 or 2007 installation package. Download SharePoint Designer from the Microsoft website, run the installer, and select only Microsoft Office Picture Manager during the installation process.
Discover Microsoft Windows XP

Discover Microsoft Windows XP download for free to PC or mobile

Latest update Discover Microsoft Windows XP download for free for Windows PC or Android mobile

3
661 reviews
3951 downloads

News and reviews about Discover Microsoft Windows XP

23 Oct 2025

Patch SMB Vulnerability to Protect Older Windows Systems

CVE-2025-33073, a severe SMB flaw impacting older Windows, urges immediate updates for SMB security.

Read more

21 Oct 2025

Prioritize CVE-2025-33073 Patch for Windows Users

Windows users urged to update for CVE-2025-33073. This vulnerability affects Server, 10, 11, necessitating quick action to avoid privilege escalation.

Read more

17 Oct 2025

CISA Adds Key Software Flaws to Exploited Vulnerabilities List

CISA updates KEV catalog with vulnerabilities found in several software, urging federal agencies to fix by 2025-11-04.

Read more

15 Oct 2025

October Patch Tuesday Fixes 167 Vulnerabilities Including Critical RCE

Microsoft's October Patch Tuesday addresses 167 vulnerabilities, including critical RCE flaws in WSUS and Microsoft Office.

Read more

05 Oct 2025

How to Recover Files and Folders Hidden by Virus in Windows XP

Learn how to recover files and folders hidden by a virus in Windows XP. Discover Microsoft Windows XP for effective solutions.

Read more

26 Aug 2025

Microsoft Addresses Wide Range of Security Vulnerabilities

Microsoft has released updates addressing 111 vulnerabilities, including critical and important issues. Key fixes target privilege-escalation bugs in Exchange Server and security flaws in Windows platforms.

Read more

14 May 2025

Microsoft Identifies Vulnerabilities, Updates Security Measures

Microsoft addressed 72 vulnerabilities, including five zero-day flaws, marking the eighth month without critical classification. Urgent patches respond to active exploitation risks.

Read more

25 Apr 2025

Windows Updates Unveil Risks with Inetpub Folder Appearance

Microsoft's recent update has led to security concerns due to the unexpected appearance of the 'inetpub' folder, potentially allowing hackers to exploit Windows systems.

Read more

09 Apr 2025

Microsoft's Milestones in Innovation and Computing History

From its 1970s inception to today, Microsoft's journey in computing innovation showcases key products like MS-DOS, Windows, and advancements in AI and cloud technology.

Read more

04 Mar 2025

CdkeySales Offers Significant Savings on Microsoft Software

CdkeySales provides major discounts on software keys for Windows 10, Windows 11, and Microsoft Office packages, offering a user-friendly purchasing process.

Read more