Signal

Microsoft Windows flaw exploited by Russian spies remains under attack after incomplete patch

Evidence first: scan the strongest sources, then decide whether to go deeper.

Published 2026-04-29 19:15 UTCUpdated 2026-04-30 04:17 UTC
rss
cveexploitsthreat_actorsadvisoriessecurity_policy
Source links open
Source links and full evidence are open here. Archive history, compare-over-time, alerts, exports, API, integrations, and workflow are paid.
No card needed for the free brief.
Evidence trail (top sources)
top sources (2 domains)domains are deduped. counts indicate coverage, not truth.
2 top sources shown
CISA adds ConnectWise, Microsoft flaws to KEV catalog
SC Media · News · scworld.com · 2026-04-30 04:17 UTC
limited source diversity in top sources
Overview

Microsoft and the US Cybersecurity and Infrastructure Security Agency (CISA) have warned that attackers continue to exploit a zero-click Windows vulnerability.

Entities
MicrosoftConnectWise
Score total
0.82
Momentum 24h
2
Posts
2
Origins
2
Source types
1
Duplicate ratio
0%
Why now
  • The vulnerability is actively exploited by a known Russian espionage group, increasing the threat level.
  • CISA's recent addition of the flaw to the KEV catalog raises awareness and prompts immediate action.
  • Microsoft's initial patch was insufficient, necessitating renewed attention and remediation efforts.
Why it matters
  • The ongoing exploitation of a zero-click Windows flaw poses a significant risk to sensitive data on affected systems.
  • Incomplete patches highlight the challenges in fully mitigating advanced persistent threat (APT) exploits.
  • Inclusion in CISA's KEV catalog signals urgency for organizations to prioritize patching and defense measures.
LLM analysis
Topic mix: lowPromo risk: lowSource quality: medium
Recurring claims
  • Microsoft's initial patch for a zero-click Windows vulnerability exploited by Russian spies was incomplete, leading to ongoing exploitation.
How sources frame it
  • Theregister_security: neutral
  • SC Media: neutral
All evidence
All evidence
CISA adds ConnectWise, Microsoft flaws to KEV catalog
SC Media · scworld.com · 2026-04-30 04:17 UTC
Show filters & breakdown
Posts loaded: 0Publishers: 2Origin domains: 2Duplicates: -
Showing 2 / 0
Top publishers (this list)
  • SC Media (1)
  • theregister_security (1)
Top origin domains (this list)
  • scworld.com (1)
  • go.theregister.com (1)