LIVE · cybersecurity feed
Live wire
Cisco warns of max severity ISE zero-day exploited in attacksCVE-2026-89026 · Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command ExecutionCVE-2026-58704 · Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted ExploitationAcronis warns of actively exploited flaw in its cPanel backup pluginOracle September 2026 Critical Security Patch Update addresses 672 CVEsCVE-2026-76461 · U.S. CISA adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalogHackers target WordPress sites via third-party WooCommerce pluginCVE-2026-51990 · Hackers exploit Tencent app flaw to deploy GrayRabbit malwareCVE-2026-42016 · CISA Adds 5 Exploited Flaws in Artifactory, ScreenConnect, RouterOS to KEVCVE-2026-85102 · Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent
patch

Windows 11 24H2 Home and Pro reach end of support in October

Microsoft reminded customers this week that devices running Windows 11 24H2 Home and Pro editions will stop receiving updates next month. [...]

zeroday.news ·

Microsoft has issued a reminder to users that Windows 11 24H2 Home and Pro editions will cease receiving updates next month, specifically on October 13, 2026. After this date, devices running these versions will no longer receive monthly security or non-security preview updates, leaving them vulnerable to new security threats.

In contrast, Windows 11 24H2 Enterprise and Education editions will continue to receive mainstream support until October 2027, aligning with Microsoft's established lifecycle policy.

Users are advised to upgrade to Windows 11 25H2, also known as the Windows 11 2025 Update, which became generally available in September 2024. This update is considered a minor release and is installed via an enablement package.

Microsoft has also indicated that systems running Windows 11 24H2 Home and Pro that are not managed by IT departments will automatically upgrade to Windows 11 25H2. Users will still retain the option to choose when to restart their devices or postpone the update.

To check for the update, eligible Windows 10 or Windows 11 users can navigate to "Settings," then "Windows Update," and select "Check for updates." If the device is ready, the option to "Download and install Windows 11, version 25H2" will be presented.

Further details on Windows servicing dates are available on the Windows Lifecycle FAQ page and through the Lifecycle Policy search tool. Microsoft also maintains a list of all products and services scheduled for retirement or end of support this year on its support website.

This announcement follows a recent notification regarding Windows Server 2022, which is transitioning from mainstream support to extended support on October 13, 2026, with extended support continuing until October 14, 2031. Earlier this year, Microsoft also extended the free Windows 10 Extended Security Updates (ESU) program for home users until October 2027 and ceased rolling out security updates to devices running Windows 11 Home and Pro 23H2 in November 2025.

patch
ShareXLinkedInWhatsAppFacebook

More News

view all →
patch

Iranian strikes on AWS facilities left customer data beyond recovery in Bahrain, UAE

Six months after Iranian drone strikes tore through its Middle East infrastructure, Amazon Web Services (AWS) has acknowledged the permanent loss of customer data in Bahrain and the UAE. In two updates posted September 15, AWS said it can no longer recover customer data and resources stored in its Middle East (Bahrain) region, known as me-south-1, or in one availability zone of its Middle East (UA

vulnerabilityhigh

Cisco warns of max severity ISE zero-day exploited in attacks

Cisco has released security updates to address a maximum-severity Identity Services Engine vulnerability that attackers are actively exploiting in the wild. [...]

vulnerability

Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day

Remote, unauthenticated attackers can exploit the vulnerability to bypass authentication via crafted requests. The post Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day appeared first on SecurityWeek.

phishing

A fake ChatGPT billing email is after your OpenAI password

A fake ChatGPT billing email is steering users to a copy of the OpenAI login page that keeps whatever username and password they type. Josh Varden of Cofense’s Phishing Defense Center traced the email’s payment button through a Google redirect to the attacker’s page. The lure targets ChatGPT users on work and personal accounts alike, and it copies the kind of bill a subscriber already expects. Cre

malware

Chosen Brick, Iran’s Surveillance Malware

UK, US, and Dutch agencies expose Chosen Brick, Iranian malware used to track and harass dissidents, journalists, and activists via Telegram. The UK, the US, and the Netherlands published a joint advisory warning about a Windows malware family, dubbed Chosen Brick, that Iran’s intelligence services use to track down dissidents, journalists, and activists, and the […]

finance

Anthropic wants Claude to analyze your bank account and financial data

Anthropic is testing a new personal finance feature called "Claude Money" that will allow you to connect your bank accounts directly to Claude and "understand your money." [...]