TECH Signal 336
Microsoft patches 421 bugs, including zero-day already exploited by Lazarus
Microsoft's August Patch Tuesday addresses 421 CVEs, including a Windows zero-day that Lazarus Group exploited in attacks on defense organizations.
With 421 fixes, this is a heavy patch cycle, and the fact that one bug was already exploited as a zero-day means patching that flaw should be top priority. The attack used a kernel-mode rootkit and a new backdoor, indicating a sophisticated threat actor.
Written by elseif from the cluster below · every claim links back to a sourceThe three things worth knowing
Microsoft addressed 421 CVEs in its August Patch Tuesday, about 200 fewer than last month.
CVE-2026-68820, a use-after-free in the Windows Ancillary Function Driver for WinSock, was exploited as a zero-day by Lazarus Group.
The attacks were part of Operation Dream Job, targeting defense sector in Europe and India with fake job offers and trojanized PDF viewer.
THE CLUSTER