Jan. 10, 2023, 8:02 p.m. | Zeljka Zorz

Help Net Security www.helpnetsecurity.com

To mark the January 2023 Patch Tuesday, Microsoft has released patches for 98 CVE-numbered vulnerabilities, including one exploited in the wild (CVE-2023-21674) and one (CVE-2023-21549) that’s been publicly disclosed. Both allow attackers to elevate privileges on the vulnerable machine. Vulnerabilities of note CVE-2023-21674 is a vulnerability in Windows Advanced Local Procedure Call (ALPC) that could lead to a browser sandbox escape and allow attackers to gain SYSTEM privileges on a wide variety of Windows and … More →


The post …

actively exploited advanced alpc attackers automox browser call cve cve-2023-21674 don't miss escape exploited ivanti january local machine mark microsoft microsoft exchange patch patches patch tuesday privileges procedure sandbox sandbox escape security update sharepoint system system privileges tenable trend micro tuesday vulnerabilities vulnerability vulnerable windows zero-day

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC