It's gonna be a big Patch Tuesday


Userlevel 7

https://krebsonsecurity.com/2020/01/cryptic-rumblings-ahead-of-first-2020-patch-tuesday/


Speculation is that it will be an update to crypt32.dll, the module that handles all certificate and cryptographic functions.


Make sure to get all the news and analysis here:



11 replies

Userlevel 7

And here’s the full story:


Badge

I can’t wait to hear about all the exploits in Windows 7 starting tomorrow.

Userlevel 7

Ironically, since the cryptographic update is for Windows 10 only, for today Windows 7 is the most secure OS in the Windows family.

Userlevel 7

And here’s the patch index page for today:


Userlevel 7

And here’s the ever hilarious analysis from The Register:


Userlevel 7

Here’s our blog breakdown:


Userlevel 7

We also got some good press around sharing our analysis and recommendations:





Userlevel 7

In case you don’t follow Swift on Security, here’s their take on things:


Userlevel 7

More details on the proof of concept exploit:


Userlevel 7

And the researchers used the proof of concept to rickroll the NSA:


Userlevel 7

Looks like the patch is having problems for some people:



Has anyone run into this?

Reply