Industry News

Microsoft's Latest Patch Batch Fixes Nearly 400 Security Flaws — One Already Under Attack

Krebs on Security · 12 Aug 2026
Key Takeaway Apply this month's Microsoft security updates promptly, especially on any systems that can't be immediately isolated from the internet.

Microsoft has released its latest round of security updates, patching at least 398 vulnerabilities across Windows operating systems and supported software. Among these, one flaw is already being actively exploited by attackers, while two others were publicly disclosed before today's release, giving cybercriminals extra time to study and potentially weaponise them.

While most of these vulnerabilities won't affect every business, the sheer volume highlights how much effort goes into keeping Windows systems secure — and how quickly that security can erode if updates aren't applied. For small and medium businesses, unpatched systems remain one of the easiest entry points for attackers, particularly when a vulnerability is already known and being exploited in the wild.

Businesses running Windows devices, servers, or Microsoft software should prioritise applying these updates as soon as possible. Delaying patches, even for a short period, increases the risk of falling victim to attacks that specifically target known and unpatched vulnerabilities.

Summarised by CISO AI from Krebs on Security. We link back to every original so you can read it yourself.