CYBERSECURITYTRACKER
TRACKING3,967 stories737 vuln stories
Permanent story citation

CISA gives federal agencies two weeks to patch Microsoft bug exploited in DPRK campaign

The story is preserved as cited. Later corrections remain visibly typed and adjacent to the original snapshot.

← newsStory 4294

As cited

Citation snapshot as of .

vulnerabilities

CISA gives federal agencies two weeks to patch Microsoft bug exploited in DPRK campaign

Researchers identified a long-running campaign by North Korean hackers targeting the job application process and disclosed the vulnerability to Microsoft. CISA has directed federal agencies to patch the bug within two weeks.

Why it matters: Federal agencies and organizations using the affected Microsoft product face active exploitation by a nation-state actor and must prioritize patching to prevent credential theft and system compromise.

Source published
First seen by Cybersecurity Tracker

Source attribution